12-02-2020 08:56 AM
Hi there,
Thanks for reading.
I have a subinterface (SI) on a physical interface (PI) on an FTD 1150 which is directly cabled to my core switch C4500. The core isn't receiving arps for the SI IP address.
FTD:
PI: Routed interface; no IP, enabled.
SI: Routed, /24 IP address, enabled
C4500:
PI: Trunked port, matching dot1.q vlan allowed, enabled
Route to SI IP address added to FTD
For sure, I missed something simple.
Thanks again for reading!
12-02-2020 09:11 AM
here is example how you can do on FTD.
can you post on switch side config to undertand.
12-02-2020 09:54 AM
Hi BB,
Thanks for writing!
Here's the switch-side interface:
interface TenGigabitEthernet1/1/5
description FIREWALL_DMZ
switchport trunk allowed vlan 112,113,115,116
switchport mode trunk
end
12-02-2020 11:18 AM
Do you have an FTD side sub-interface inline with this VLAN? 112,113,115,116
12-02-2020 11:44 AM - edited 12-02-2020 11:45 AM
Hi BB, yes I have all 4 vlans configured FTD-side. Looking at the jpeg, I realized that i'd misconfigured 1/7.115. I reconfigured it but still no arp. Same with the other 3 VSIs.
12-02-2020 03:02 PM
Not sure the image very clear. here is FTD with Trunk config if you using FDM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide