06-28-2005 08:17 AM
I have a question about using the CSS at Layer-2 rather than letting it route traffic. All of the example configurations show private addresses behind the CSS and translations/VIP to the external address structure. I'd like to use this CSS in two unique IP subnets and not translated the address inside to out. Basically, I want the CSS to function like a Layer-2 vlan enabled switch. Is this possible?
06-28-2005 10:43 AM
this is possible. Nothing special is required to have the CSS works in this setup.
Gilles.
06-28-2005 11:15 AM
Can you point me to a sample configuration? I've been trying for two days to make this work. I have been successful in making it work in the more traditional configuration but now I'm stumped.
06-28-2005 12:06 PM
basically you just need to create 1 circuit vlan and have all your physical interface in this vlan.
You need to guarantee that the response from the servers will go back to the CSS, so if the CSS is not the default gateway, the mac address of the gateway should be learned through the CSS.
If the servers are directly connected to the CSS this is no problem, if not, you need to create a separate vlan on your L2 switch [not CSS] for servers and gateway and have the CSS bridge the 2.
The rest of the config is exactly the same as for a L3 setup.
Regards,
Gilles.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide