09-29-2006 06:32 AM - edited 03-09-2019 04:21 PM
With a FWSM license of 20 firewalls,
no more than 16 vlan-groups are allowed for one module.
Whats the limit of the vlan-groups with a license of 50 or higher ?
Solved! Go to Solution.
09-29-2006 02:56 PM
Lowen is right, you can actually map all of your VLANs to the module with a single group. Then inside the system context you decide which VLANs map to which contexts.
In answer to your question lowen, yes you can map multiple groups to one module. I acutally do that sometimes, even though there isn't a practical reason to do so.
- Eric
09-29-2006 01:06 PM
I don't understand the question. If you're talking about firewall vlan-groups on the switch/router, you only need 1 vlan-group for each fwsm (or failover pair), regardless of the number of contexts. Can you actually assign multiple firewall vlan-groups to a module?
If you're talking about the vlans in a firewall vlan-group, where does this information about the restriction come from? You could have 16 vlans for a single transparent context (with 8 bvi's), which would imply you could have 320 vlans w/20 contexts. I've never seen anything about a restriction related to vlan-groups.
09-29-2006 02:56 PM
Lowen is right, you can actually map all of your VLANs to the module with a single group. Then inside the system context you decide which VLANs map to which contexts.
In answer to your question lowen, yes you can map multiple groups to one module. I acutally do that sometimes, even though there isn't a practical reason to do so.
- Eric
10-02-2006 12:49 AM
I think you answered my question.
I had a vlan-group configured for each context
( 16- was the limit).This wasn't necessary,
I can use only one vlan-group for all of the contexts.
Okee,thanks Lowen en Ethiel.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide