cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
431
Views
0
Helpful
1
Replies

Two interfaces and two default gateways on the same class

yolo230985
Level 1
Level 1

I have one web server attached on a Catalyst and then with NAT it can be accessed from the Internet through the PIX. The default gateway of the web server is the PIX. Now, I want to connect the second network interface of the web server on the CSS and then again through the Catalyst and PIX it can be accessed from the Internet. What I have I done so far is to assign an IP address on the second interface which is on the same class with the first interface and as a gateway I assigned the CSS IP address, on the CSS the default gateway is the PIx. So far everything works as I wanted:

- the web server can be accessed directly through the first network interface

- it can also be accessed through the second network interface

- I can also use the web service through the VIP on the CSS

I have a concern if am I doing anything wrong with the second network interface that has an IP address on the same class with the first interface, and also is it correct to have two default gateways?

1 Reply 1

Gilles Dufour
Cisco Employee
Cisco Employee

how does your server select the default gateway ?

If traffic comes in via the CSS goes out through the outher interface, directly to the pix, bypassing the CSS, then the CSS will reset the connection assuming this is a DOS attack.

So, 2 interfaces is usually a bad idea.

I would simply insert the CSS between the pix and the server. The CSS can still forward traffic directly to the server without the use of a Vip.

Regards,

Gilles.

Review Cisco Networking for a $25 gift card