How would you create a vlan on a cisco catalyst 3500 connect to Cisco asa 5500.

How would you create a vlan on a cisco catalyst 3550 switch connect to Cisco asa 5500 firewall.
 
 
henjohn1520Asked:
Who is Participating?
 
jordanrogConnect With a Mentor Commented:
here is how to do it. It is a step by step walk through if you get stuck just add a comment and I will do my best. The second link is for vtp.

http://www.cisco.com/en/US/tech/tk389/tk689/technologies_configuration_example09186a008009478e.shtml

http://www.cisco.com/en/US/tech/tk389/tk815/technologies_configuration_example09186a008015f17a.shtml#config1
0
 
henjohn1520Author Commented:
What changes would need to be done on the asa 5500 firewall? Would I have to create a vlan to match the new vlan on the switch? Let me explain how the Cisco 3550 switch is connected to the Cisco ASA 5500 firewall.

Port 0/23 on the Cisco 3550 switch is connected to port 0/1 on the Cisco ASA 5500 firewall. Port 0/23 is in the Cisco 3550s default vlan 1 and its set to switchport mode dynamic desirable. Port 0/1 is in the Cisco ASA 5500s vlan1. What would be the first step?
0
 
lrmooreCommented:
You would create a trunk port between the switch and the ASA
On the switch:
 interface fast 0/23
  switch trunk encap dot1q
  switch mode trunk

Then, define a VLAN on the switch:
 vlan 123
exit
Then, assign an interface to this vlan
 interface fast 0/xx
  switch access vlan123

On the ASA, create a sub-interface for the new vlan, with vlan ID
interface Ethernet 0/0.123
 vlan 123
 nameif vlan123
 security-level 100
 ip address 192.168.123.1 255.255.255.0
0
Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

 
henjohn1520Author Commented:
Would anything need to be done to allow computers on the new vlan to access the internet.
0
 
henjohn1520Author Commented:
I am unble to create a sub-interface with my cisco asa 5505.  I followed the commands that you provided, but I was unable to.
0
 
lrmooreCommented:
Ah.. 5505 is a little different
Here's a good piece from our friend batry_boy
http://www.experts-exchange.com/Hardware/Networking_Hardware/Firewalls/Q_22456080.html
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.