cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
575
Views
0
Helpful
0
Replies

Vlan translation and inspection of Firepower 2110

neroshake
Level 1
Level 1

Hello,

 

I have the following situation.

Router 2951 with G0/0/0 with 25 subinterfaces, each for its vlan.

Also have a pair of Firepower 2110 appliances managed by FMC.

 

The goal is:

1. To translate all these 25 vlans into one.

2. Do the basic Firewall and IPS inspection of the traffic passing from these 25 vlans and to them.

 

Can I accomplish this via Firepower? If so I think there are two options - using Inline Pair or BVIs. Per my understanding I will not be able to change vlan tags using Inline pair. So the only option is to use BVI somehow. Will it work if I create a BVI between 25 interfaces on one side and one on the other? If so, how will I be able to do firewall and IPS checks on traffic flowing in that link? Thanks!

 

0 Replies 0
Review Cisco Networking for a $25 gift card