03-29-2005 12:14 AM - edited 02-21-2020 12:02 AM
Hi,
I think the answer is no but cannot find any conclusive statements on cco. Is it possible for a PIX to operate with two of it's ethernet interfaces within the same subnet and still do its firewall function in a briding mode? I think not since how would the box know how to forward the packets? Also, you cannot address two interfaces within the same subnet (unless there is a trick I know nothing of!)
I have a customer who has a network of about 200 odd hosts who wants to seperate them and only allow communication according to specific rules between two departments of 100 hosts each. They don't want to re-address the segments. I can see no solution if they want to use PIX other than readdressing.
Thanks, Steve
03-29-2005 01:02 AM
Hi, Steve
I believe PIX OS version 7.0 (to be out on CCO pretty soon, perhaps this week!) would be able to do L2 Transparent Firewalling.
Thanks,
Federico Rodriguez
03-29-2005 04:07 AM
Thanks!! Yes, looking at the release notes for 7.0 it says that the PIX can act as a transparent firewall at layer 2. I had looked everyhwere for this until I knew about release 7.0 !!!
Thanks Federico!
Steve
03-29-2005 04:11 AM
I think ver 7 of PIX OS supports the transparent feature.
Regards
Dilan
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide