Issue:
Need to cfg. PIX 525 with a 2950 dmz switch. Would like to make VLANS on switch. Do not wish to use router on a stick to route between VLANS.
internet
router
|
outside
pix -- dmz switch (w vlans 2-6)
inside
prod network
It is my understanding that with 6.3.3 one can cfg logical ints on a Pix and have it to the routing between VLANS on a dmz switch. Is this true? I hope to aviod using .1q to the inside! So, can the PIX be cfg'd to get traffic to and from individual vlans on the dmz switch without consulting a router?
I read 6.3.1 etc., release notes and they give a very short example and discussion. Does anyone have a good, short, example cfg, similar to my situation, that they would be willing to share?
Side question:
Does anyone have solid figures on when a 525 needs a
VAC+ to handle 3des tunnels. The Cisco web site gives a nebulous suggestion. Any real world example would help me. Planning 3des to 3 peers, plus future addition of 40 peers w/ 3des.
Thanks,
D