cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

451
Views
0
Helpful
0
Replies
Highlighted
Beginner

Sub-interfaces on n5k

Hi, I am trying to connect N5k (layer-3) and ASA, there is a requirement where some of the security-sensitive vlans have their layer-3 on the ASA and for those vlans who are less-sensitive have their svis on the N5k. I am doing a POC in my lab gear first. The n5k and the ASA are connected by 1 physical link having sub-interfaces on both the ends. There is a sub-int with vlan 10 (10.1.1.0/30) on both sides and the ASA injects a default-route to the N5k over this. so in case a non-secure vlan needs to talks to a secure-vlan it goes through via this path. My issue is that, if i create a sub-intf on the ASA, give it a vlan tag of 20, and on my N5k i add a port in that same vlan, i cannot ping my GW (ASA) from the laptop. I have also created a similar sub-int on the N5k side as well with tag 20, BUT still does not work.

attached visio.

Any clues??

Thnx

Sandev

Everyone's tags (2)
CreatePlease to create content
Content for Community-Ad
August's Community Spotlight Awards