cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
366
Views
0
Helpful
1
Replies

PIX and VLAN

phiz.petry
Level 1
Level 1

Hello,

I must change a 2610 router (using to interconnect VLAN) by a PIX Firewall 525.

Then the technical support can better manage VLAN with the PIX PDM than CLI IOS.

I cannot find a lot of information on how to configure PIX ver 6.3 and VLAN.

But i have this information :

I cannot use VLAN1 as physical interface. I must implemented a VLAN2 physical and VLAN3 logical.

But i don't want to change my VLAN configuration (today : all my PC on default VLAN1 and the Wifi AP on VLAN2)

1) Is it possible to connect the PIX inside interface on a switch port (VLAN1) and the outside on the same switch on trunk port ?

2) Has somebody example of VLAN configuration

Thanks for your help

1 Reply 1

pradeepde
Level 5
Level 5

When configuring VLANs on a PIX, ensure that the physical interface is not assigned the same VLAN ID as the native VLAN on the other end of the trunk. This way, traffic from the PIX does not forward to the native VLAN on the switch. This prevents vulnerability to the jumping VLAN attack.

Review Cisco Networking for a $25 gift card