cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
375
Views
5
Helpful
1
Replies

client & server vlans with csm and fsm

triplecap
Level 1
Level 1

I'm working on the config for a 6509 with both the CSM and FSM modules. I found a good Cisco article that dealth with running both modules in the same chassis - I just have a few questions. I'm going to have multiple server farms that I need load balanced and secured from each other. I'm going to create an interface on the firewall for each segment that will serve as the default gateway for each server farm. The CSM will then be run in bridge mode between the servers and the firewall. My question is regarding which vlans I need to create on the MSFC and which I have to create on the CSM. The document said to asign the client side vlans to the FSM, and then to create the client and server vlans on the CSM. I assume that I plug the server itself into a switchport on the server vlan, correct? If that's the case, then don't I need to also create the server vlan on the MSFC too?

Thanks in advance,

Eric

1 Reply 1

Gilles Dufour
Cisco Employee
Cisco Employee

Eric,

if you are running native, you need indeed to create all the vlans that you are going to use on the MSFC.

BUT that does not mean you also need an interface for each vlan.

Actually, in the scenario that you describe the MSFC is not being used to switch traffic.

You must not create any interface vlan for the server or client vlans involved in this scenario.

We want to avoid servers/clients to bypass the firewall or the csm by going through the MSFC.

Regards,

Gilles.

Review Cisco Networking for a $25 gift card