cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2778
Views
5
Helpful
11
Replies

Fuji-16.9.1 ED Vs Everest-16.6.3 ED

balaji.bandi
Hall of Fame
Hall of Fame

Looking to deploy in production environment, Default  Catalyst 9300 ship with Everest-16.6.3 ED.

 

 

what is the difference here - which one got more advantage, i know Everest is the answer, if that is answer Why Fuji ?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

1 Accepted Solution

Accepted Solutions

I am bit confused there, the thread is different your reply or issue not related to thread, can you open new thread moving forward to address correctly

in that case you need add routing on the Switch and make sure Fotigate Firewall have routing back to switch.

ip route 0.0.0.0 0.0.0.0 20.0.10.5 

FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.6   --< change like this and test it
DNS 8.8.8.8

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

11 Replies 11

Leo Laohoo
Hall of Fame
Hall of Fame
What are you doing with your switch? Layer 2 or Layer 3?
If it's going to be Layer 2, are they going for 802.1x or static VLAN assignments?

Reza Sharifi
Hall of Fame
Hall of Fame

The suggested version on Cisco's site is:

Everest-16.6.3

HTH

Good Stuff :)

 

L2 and L3 Only for now. ( no other fancy stuff).

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

16.6.4 for now.
Don't forget to install the SMU.

16.6.4 MD, yes i was reading the release notes before i posting this one...i was thinking for the same instead of Fuji ...everest 16.6.4...downloaded let me test on Cat93000

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

rdquraishi
Level 1
Level 1

FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.6
DNS 8.8.8.8

FG-LAN-SW1
vlan 10
!
interface Vlan10
ip address 20.0.10.6 255.255.255.0
no shut
!
interface Ethernet0/1
switchport mode access
switchport access vlan 10
!
interface Ethernet0/0
switchport trunk encapsulation dot1q
switchport mode trunk

FG-FW1
port3
Vlan10
IP 20.0.10.5/24

FG-Win-PC1- I can ping 20.0.10.6(SW INT Vlan10) and 20.0.10.5(FW INT Vlan10)
but for 8.8.8.8 reply from 20.0.10.6 destination host unreachable

FG-LAN-SW1- I can ping 20.0.10.5(FW INT Vlan10) and 20.0.10.1(PC1)
but for 8.8.8.8 packet is not forwarding over the trunk port

FG-FW1- I can ping 20.0.10.1(PC1), 20.0.10.6 (SW INT Vlan10) and 8.8.8.8

please suggest me on this when i am pinging google dns the traffic is not passing through the switch

FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.5   --< change like this and test it
DNS 8.8.8.8

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hello,

When I putting .5 as gateway it start working, but the scenario is I don't want to put firewall interface as gateway 

I am bit confused there, the thread is different your reply or issue not related to thread, can you open new thread moving forward to address correctly

in that case you need add routing on the Switch and make sure Fotigate Firewall have routing back to switch.

ip route 0.0.0.0 0.0.0.0 20.0.10.5 

FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.6   --< change like this and test it
DNS 8.8.8.8

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

PC1 IP 20.0.10.1 gateway 20.0.10.6 SW1 Vlan10 20.0.10.6 firewall(port3) Vlan10 20.0.10.5

PC2 IP 20.0.20.2 gateway 20.0.20.6 SW1 Vlan20 20.0.20.6 firewall(port3) 20.0.20.5

 

How I can separate the vlan traffic?

Open a new thread.

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card