05-11-2009 05:46 PM - edited 03-11-2019 08:30 AM
Hello.
I trie to change firewall mode from single to multiple, but It won't wrok,
I don't know why is it!.
please check up follwoing log.
Proceed with change mode? [confirm]
FWSM_ACT#
[Resuming connection 1 to 127.0.0.71 ... ]
Convert the system configuration? [confirm]
!
The old running configuration file will be written to disk
!
1385 bytes copied in 0.860 secs
The admin context configlet will be written to disk
!
1228 bytes copied in 0.920 secs
The new running configuration file was written to flash
Firewall mode: multiple
00:29:40: %MFIB_CONST_RP-6-REPLICATION_MODE_CHANGE: Replication Mode Change Detected. Current system replication mode is
Egress
00:29:40: SP: The PC in slot 7 is shutting down. Please wait ...
00:29:40: SP: PC shutdown completed for module 7
00:29:40: %STANDBY-6-STATECHANGE: Vlan112 Group 112 state Active -> Init
00:29:41: %C6KPWR-SP-4-DISABLED: power to module in slot 7 set off (Reset)
FWSM_ACT#discon
Closing connection to 127.0.0.71 [confirm]
FWSM_ACT#
FWSM#
FWSM# show mode
Firewall mode: single
The flash mode is the SAME as the running mode.
FWSM#
FWSM#
FWSM Firewall Version 2.3(5)
Compiled on Sun 08-Jul-07 19:28 by dalecki
FWSM up 8 mins 13 secs
Hardware: WS-SVC-FWM-1, 1024 MB RAM, CPU Pentium III 1000 MHz
Flash 04-29-05STI Flash 7.2.0 @ 0xc321, 20MB
0: gb-ethernet0: irq 5
1: gb-ethernet1: irq 7
2: ethernet0: irq 11
Licensed Features:
Failover: Enabled
VPN-DES: Enabled
VPN-3DES: Enabled
Maximum Interfaces: 256
Cut-through Proxy: Enabled
Guards: Enabled
URL-filtering: Enabled
Throughput: Unlimited
ISAKMP peers: Unlimited
Security Contexts: 2
This machine has an Unrestricted (UR) license.
Serial Number: ###########
Running Activation Key: 0x00000000 0x00000000 0x00000000 0x00000000
Configuration last modified by enable_15 at 04:50:25 May 12 2009
FWSM#
regarding above log, I must be changed to multiple configuration, after reload, the firewall mode is single, it is not changed to multiple mode. why?
your advice appreciate to me!
05-12-2009 12:16 AM
This document describes the steps used to configure multiple context in Firewall Service Module (FWSM).
pls rate
05-12-2009 12:33 AM
One thing on Cisco.com I found that may be of interest was this quote:
"Multiple context mode does not support dynamic routing protocols such as RIP and OSPF. Use static routing instead."
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide