Solved

Default Gateway for Switch

Posted on 2004-10-21
310 Views
Last Modified: 2010-04-17
I have a PIX 515E with eth0 as outside, eth1 as inside and eth2 as dmz.
eth0 ip is 100.100.100.1/24
eth1 ip is 10.10.10.1/24 physical vlan2
eth2 ip is 172.10.10.1/24

eth1 connects to port fa1/0/40 on Cisco 3750
3750 has int vlan2 ip address 10.10.10.2/24 and int vlan3 ip address 10.10.20.1/24

fa1/0/40 is switchport trunk encap dot1q
3750 has ip routing enabled as it has no switchport link to another 3750 and for inter-vlan routing

Users on vlan3 will use 10.10.20.1 as default gateway

3750 will use default route 0.0.0.0 0.0.0.0 10.10.10.1

1.  Is this a viable configuration?

2.  Providing that the PIX allows icmp, should vlan3 users (and users on other 3750) be able to ping eht1 on PIX (10.10.10.1)?
0
Question by:cisdoz2
    2 Comments
     
    LVL 79

    Accepted Solution

    by:
    1. Sure.

    You need to add a static route on the PIX for 10.10.20.0/24 pointing back to the 3750. Until you do that, the answer to #2 is "they will be able to if you provide the proper routing entry on the PIX"

    Suggestion: enable OSPF on both the PIX and the 3750..

    0
     

    Author Comment

    by:cisdoz2
    Thanks for the quick response.
    0

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Prepare to Pass the CompTIA A+ 900 Series Exam

    CompTIA aims to adapt its A+ Certification to reflect the most current knowledge and skills needed by today's IT professionals--and this year's 2016 exam is harder than ever. This certification is one of the most highly-respected and sought after in IT.

    It happens many times that access list (ACL) have to be applied to outgoing router interface in order to limit some traffic.This article is about how to test ACL from the router which is not very intuitive for everyone. Below scenario shows simple s…
    We've been using the Cisco/Linksys RV042 for years as: - an internet Gateway - a site-to-site VPN device - a leased line site-to-site subnet-to-subnet interface (And, here I'm assuming that any RV0xx behaves the same way as an RV042.  So that's …
    After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
    After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

    913 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    17 Experts available now in Live!

    Get 1:1 Help Now