Configuring Interfaces for Transparent Firewall Mode
hostname(config-if)# security-level 100
This interface must be set to level 100.
To set the IP address, enter the following command:
Step 4
hostname(config-if)# ip address ip_address [mask] [standby ip_address]
The standby keyword and address is used for failover. See
information.
To set this interface to be management-only, enter the following command:
Step 5
hostname(config-if)# management-only
This command is required; an interface without the management-only command will be ignored.
The following example configures interfaces for one bridge group each for three contexts, plus a shared
management VLAN (see
Figure 6-1
Management VLAN 500
Context A
10.0.0.1
FWSM
VLAN 101
Bridge group IP:
209.165.200.226
Context A
hostname(config)# interface vlan500
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
6-8
Figure
6-1).
Shared Management VLAN
Internet
VLAN 104
VLAN 102
Context B
FWSM
VLAN 103
Bridge group IP:
209.165.201.2
Inside
Inside
Context A
Context B
Chapter 14, "Configuring Failover,"
VLAN 106
Context C
10.0.0.2
10.0.0.3
FWSM
VLAN 105
Bridge group IP:
209.165.202.129
Inside
Context C
Chapter 6
Configuring Interface Parameters
for more
OL-20748-01