10-28-2009 06:09 AM - edited 03-11-2019 09:32 AM
Hi,
I need some clarification on the classification criteria on multiple contexts. As mentioned in the documents there are 3 different methods which are
1. Unique MAC
2. Unique Interfaces
3. NAT Config
In Unique Interfaces, as per the document
"If only one context is associated with the ingress interface, the security appliance classifies the packet
into that context"
In which case would i need to use this topology?
With regards to Unique MAC Address
In which scenario would multiple contexts share a single Interface. Does ACE allocate MAC addresses to contexts?
Thanks
10-29-2009 12:33 PM
Hi,
"In which case would i need to use this topology?"
For instance, If you have enough interfaces in your security appliance and/or don't have multiple context in the same network segment, you can choose to allocate different interfaces to each context, so no interface is shared.
"With regards to Unique MAC Address"
If you have for instance just one interface to connect all context to Internet.
with the command "mac-address auto" the security appliance assign unique MAC to each shared context interface
Hope this helps
10-29-2009 12:46 PM
Hi,
"In which case would i need to use this topology?"
For instance, If you have enough interfaces in your security appliance and/or don't have multiple context in the same network segment, you can choose to allocate different interfaces to each context, so no interface is shared.
"With regards to Unique MAC Address"
If you have for instance just one interface to connect all context to Internet.
with the command "mac-address auto" the security appliance assign unique MAC to each shared context interface
Hope this helps
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide