12-15-2002 09:40 AM - edited 03-09-2019 01:24 AM
I need install one PIX 501 in a net that has one SNA server. The outside interface of the PIX is connected in interface e0 of the router .
Is it possible the llc2 packets to pass for firewall and I continue protecting the IP traffic?
If not, I thought about only connecting another interface of router (e1) in the internal net for only the traffic llc2 (don't passing by the firewall)but I do not know as to configure the interface of router.
Solved! Go to Solution.
12-17-2002 03:18 PM
The PIX only handles IP traffic, so unless tyou can encapsulate your LLC traffic in IP, the PIX won't touch it. I guess you could bypass the PIX and connect an LLC2-only interface on the router into your inside network, depends on how secure you want to be. Make sure you don't configure an IP address on this router interface, otherwise you'll run the risk of someone getting in around the PIX security.
12-17-2002 03:18 PM
The PIX only handles IP traffic, so unless tyou can encapsulate your LLC traffic in IP, the PIX won't touch it. I guess you could bypass the PIX and connect an LLC2-only interface on the router into your inside network, depends on how secure you want to be. Make sure you don't configure an IP address on this router interface, otherwise you'll run the risk of someone getting in around the PIX security.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide