Solved

How to configure vlans on my Cisco pix  515e

Posted on 2011-09-10
6
629 Views
Last Modified: 2012-08-13
Hi Experts,

I have a cisco switch 3550 in which I will configure the vlans 10 and 20.
The VLAN 10 with ip 192.168.1.10
The VLAN 20 with ip 10.0.0.10

My PIX 515E
Will have NAT and PAT enable, I do not have a static ip address outside, I checked the configurations on how to create a vlan and I noticed that the inside E1 interface is not configure but instead they assign the VLANS as interface E1.10  AND interface E1.20 instead.
My question is:
Do I have to assign an ip address to the inside interface E1 when creating VLANS on that interface?
If I do not assign an ip address then how can I manage the PIX using SSH or telnet?

Please advise.
0
Comment
Question by:chenzovicc
  • 3
  • 2
6 Comments
 
LVL 10

Expert Comment

by:SuperTaco
ID: 36517216
Instead of assigning an I tothe interface, create a sub interface and define whati VLAN it belongs to

ocnfig t
int e1.1
encapsulation .1q
vlan 1000
ipaddress x.x.x.x
0
 

Author Comment

by:chenzovicc
ID: 36517291
So you mean that instead of assigning an ip address to the inside E1 interface I should create the 2 vlans on the E1?.
Do I have to assign a NAT for every vlan? so they can access the internet?
0
 
LVL 10

Accepted Solution

by:
SuperTaco earned 250 total points
ID: 36517447
Yes, and you should just have to assign a static route.  
0
Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

 

Author Comment

by:chenzovicc
ID: 36518158
You mentioned that I should assign a static route but if my vlans are coming from a HIGHER LEVEL interface to a lower level(INTERNET) Do I still need to assign static routes?.

Thanks
0
 
LVL 18

Assisted Solution

by:fgasimzade
fgasimzade earned 250 total points
ID: 36521843
Your subinterfaces (vlans) are like physical interfaces, so you would need NAT for both of them.

A static route pointing to the internet is usually looks like this:

route outside 0.0.0.0 0.0.0.0 ip_default_gateway
0
 

Author Closing Comment

by:chenzovicc
ID: 36551864
Thanks
0

Featured Post

Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
From Cisco ASA version 8.3, the Network Address Translation (NAT) configuration has been completely redesigned and it may be helpful to have the syntax configuration for both at a glance. You may as well want to read official Cisco published AS…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

910 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

26 Experts available now in Live!

Get 1:1 Help Now