cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
431
Views
0
Helpful
4
Replies

firewall between directly connected networks

hi everyone,

i have a switch (2960) which is configured with several virtual interfaces. i need to add routing ability to this switch. however when i enable routing, the switch sees all the interfaces i created as being directly connected. but i also need to have the traffic inspected as it enters any of the interfaces. i have an asa and i would like the switch to forward all the traffic to this asa where it gets inspected. is it possible to do this?

thanks

4 Replies 4

Richard Burts
Hall of Fame
Hall of Fame

If you were to do the routing between subnets on your ASA and leave the switch as layer 2 then the ASA could inspect all the traffic. If you enable routing on the 2960 then I am not aware of a way to send all traffic to the ASA to be inspected.

 

HTH

 

Rick

HTH

Rick

thank you Richard.

trfinkenstadt
Level 1
Level 1

Hello,

 

Can you put the default gateway for your vlans onto the ASA, remove the SVIs on the 2960, and route through the ASA?

 

 

i will give it a try. thanks.

Review Cisco Networking for a $25 gift card