10-19-2018 08:06 AM - edited 03-08-2019 04:25 PM
Looking to deploy in production environment, Default Catalyst 9300 ship with Everest-16.6.3 ED.
what is the difference here - which one got more advantage, i know Everest is the answer, if that is answer Why Fuji ?
Solved! Go to Solution.
02-18-2024 09:15 AM
I am bit confused there, the thread is different your reply or issue not related to thread, can you open new thread moving forward to address correctly
in that case you need add routing on the Switch and make sure Fotigate Firewall have routing back to switch.
ip route 0.0.0.0 0.0.0.0 20.0.10.5
FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.6 --< change like this and test it
DNS 8.8.8.8
10-19-2018 03:02 PM
10-19-2018 03:18 PM
The suggested version on Cisco's site is:
Everest-16.6.3 |
HTH
10-19-2018 10:45 PM
Good Stuff :)
L2 and L3 Only for now. ( no other fancy stuff).
10-20-2018 03:38 AM
10-20-2018 07:55 AM
16.6.4 MD, yes i was reading the release notes before i posting this one...i was thinking for the same instead of Fuji ...everest 16.6.4...downloaded let me test on Cat93000
02-18-2024 07:41 AM
FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.6
DNS 8.8.8.8
FG-LAN-SW1
vlan 10
!
interface Vlan10
ip address 20.0.10.6 255.255.255.0
no shut
!
interface Ethernet0/1
switchport mode access
switchport access vlan 10
!
interface Ethernet0/0
switchport trunk encapsulation dot1q
switchport mode trunk
FG-FW1
port3
Vlan10
IP 20.0.10.5/24
FG-Win-PC1- I can ping 20.0.10.6(SW INT Vlan10) and 20.0.10.5(FW INT Vlan10)
but for 8.8.8.8 reply from 20.0.10.6 destination host unreachable
FG-LAN-SW1- I can ping 20.0.10.5(FW INT Vlan10) and 20.0.10.1(PC1)
but for 8.8.8.8 packet is not forwarding over the trunk port
FG-FW1- I can ping 20.0.10.1(PC1), 20.0.10.6 (SW INT Vlan10) and 8.8.8.8
please suggest me on this when i am pinging google dns the traffic is not passing through the switch
02-18-2024 08:06 AM
FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.5 --< change like this and test it
DNS 8.8.8.8
02-18-2024 09:12 AM
Hello,
When I putting .5 as gateway it start working, but the scenario is I don't want to put firewall interface as gateway
02-18-2024 09:15 AM
I am bit confused there, the thread is different your reply or issue not related to thread, can you open new thread moving forward to address correctly
in that case you need add routing on the Switch and make sure Fotigate Firewall have routing back to switch.
ip route 0.0.0.0 0.0.0.0 20.0.10.5
FG-Win-PC1
IP 20.0.10.1/24
Gateway 20.0.10.6 --< change like this and test it
DNS 8.8.8.8
02-18-2024 09:32 AM
PC1 IP 20.0.10.1 gateway 20.0.10.6 SW1 Vlan10 20.0.10.6 firewall(port3) Vlan10 20.0.10.5
PC2 IP 20.0.20.2 gateway 20.0.20.6 SW1 Vlan20 20.0.20.6 firewall(port3) 20.0.20.5
How I can separate the vlan traffic?
02-18-2024 09:43 AM
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: