cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
388
Views
0
Helpful
3
Replies

using other interface of PIX 515 as inside.

kashyapkamal
Level 1
Level 1

Hi Friends,

Can we make another interface as inside other than ethernet1, by the configuring security levels of interface.?

Thanks in advace.

Kamal

kashyap_kamal@rediffmail.com (pls reply on this email id)

3 Replies 3

ggilbert
Cisco Employee
Cisco Employee

Hello Kashyap,

Yes, you can use other ethernet interfaces as an inside interface and change the security levels. That should not be an issue at all.

Rate this topic, if it helps.

Cheers

Gilbert

Hello Gilbert,

I configured the new interface with same security level of 100 as inside interface.

Everything works fine except the VPN tunnels.

And after wards reverted back to pervious configuration and found the VPN tunnels working fine.

My point of concern is do VPN Ipsec tunnels get affected after changing the inside interface to other physical interface.

Thanks!

Kamal

Kamal,

Can you please let me know what changes were made on the PIX. And a snippet of the changes made would be helpful.

VPN traffic should not be affected.

1. After the change, did you see the tunnels on the PIX.

sh cry isa sa - would show that to you.

2. Did see packets decrypted on the PIX -

sh cry ipsec sa - would show you that.

3. What was your "nat" statement like, after the change?

Please let me know.