02-23-2006 06:09 AM - edited 02-21-2020 12:43 AM
I'm currently work with pix 515E, with Ios version 6.1.I want to know, if this pix firewall can support multiple instance of firewall.
How the configuration o instance of firewall is done ??
How can i configure trunk with vlan ??
regards.
02-23-2006 07:01 AM
Version 7.x is required to do what you need.
It is necessary to upgrade to 6.2 or 6.3 before doing an upgrade to 7.x.
Complete configuration documentation for v71 can be found here:
http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_71/cmd_ref/index.htm
http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_71/conf_gd/index.htm
The number of instances (virtual machines) is under licensing. 2 instances basically comes for a PIX-UR. You should check if your 515 meets the minimum hardware requirements to do all this.
HTH
02-28-2006 06:41 AM
I don't see where the differents instances vlan are configured for pix 515E.
Regards.
02-28-2006 01:28 PM
According to this documentation (see table A2) pix-515e-UR is licensed for a max of 25 vlan's.
http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_7_1/conf_gd/specs.htm#wp1095332
Mike
02-28-2006 01:46 PM
Virtual firewall, available on PIX 515E UR with PIX OX 7.x, are called context. Without additional license you have 2 integrated in the UR license.
You can purchase an additional license that gives you up to 5 contextes:
Setup examples:
http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_7_1/conf_gd/contexts.htm
VLAN setup:
http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_7_1/conf_gd/intparam.htm
sincerely
Patrick
03-01-2006 02:06 AM
On the document example you send to me, the pix firewall has Gigabiethernet interface.The pix 515 E in my network doesn't have Gigabitethernet interface.
I don't see where the configuration of security policy apply to each vlan.
In fact, i have to configure a instance vlan for each client.
Is it possible to give an interface web for each vlan instance.In this interface web ou other, the client 'll be able to apply its own security policy.
Regards.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide