Avatar of mikey250
mikey250 asked on

pix firewall

hi i have a cisco 837 router and i can access the sdm as usual.

note: i do not have an (adsl line) as im currently with virgin using their vmdg480 router that i have currently changed from default dhcp & set to (modem/enable) instead that provides me with public address details at my isa 2006/external nic.

note:  currently i have set my win 2003 server as 192.168.0.2/24 that enables me to ping the below address which also allows me access to the sdm gui:

config t
int eth0
ip address 192.168.0.1 255.255.255.0
no shut

config t
int fa1
description connected to win 2003 server as stated above
no ip address

config t
int fa2
ip address x.x.x.x x.x.x.x
ip addresses may not be configured on l2 links
no switchport
%invalid input detected at '^' marker

config t
description x-over cable connected to virgin vmdg480 router to internet
int fa4
no ip address

question 1.  can anyone tell me what i need to configure next in order for me to enable the lan ports fa1 & 4 as only offers: gre or loopback  ?
CiscoHardware FirewallsRouters

Avatar of undefined
Last Comment
mikey250

8/22/2022 - Mon
Jacob Kellemann

You can't put ip addresses directly on the FA ports, they are layer 2 only. Instead you need to create VLAN interfaces which do support layer 3 ip addresses.

For example:

inter vlan 2
ip add x.x.x.x y.y.y.y

inter fa2
switchport access vlan 2
ASKER
mikey250

hi

i have not managed to return back to my cisco 837 wan connectivity issue as yet but sometime next week i will do!!

question 1.  just for clarification, are you saying adding a 'vlan' on a port will change it from layer 2 to layer 3 and make it a 'wan' connection  ?

i will even add 'ip routing' which i am not sure is needed as assumed it was when 'routing protocols' were used
ASKER
mikey250

due to trying to carryout some other issues i have had to put a hold on this issue i have but once resolved will then return back to this issue.
Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy
ASKER
mikey250

morning kellemann, I decided to take a look back at this issue I have.

by the way the following does not work at all on ciso 837:

config t
int vlan 2 - invalid input
ASKER CERTIFIED SOLUTION
Jacob Kellemann

Log in or sign up to see answer
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform
Sign up - Free for 7 days
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
See how we're fighting big data
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
ask a question
ASKER
mikey250

hi kelleman, ok thanks for that!  much appreciated.
ASKER
mikey250

sound advice.
Get an unlimited membership to EE for less than $4 a week.
Unlimited question asking, solutions, articles and more.