Contents
iv
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide
OL-6392-01
CHAPTER
2 Configuring the Switch for the Firewall Services Module 2-1
Switch Overview 2-1
Verifying the Module Installation 2-2
Assigning VLANs to the Firewall Services Module 2-2
Prerequisites 2-3
Assigning VLANs in Cisco IOS Software 2-3
Assigning VLANs in Catalyst Operating System Software 2-5
Adding Switched Virtual Interfaces to the MSFC 2-5
SVI Overview 2-6
Configuring SVIs for Cisco IOS Software on the Supervisor Engine 2-8
Configuring SVIs for Catalyst Operating System Software on the Supervisor Engine 2-9
Customizing the FWSM Internal Interface 2-11
Configuring the Switch for Failover 2-11
Assigning VLANs to the Secondary Firewall Services Module 2-12
Adding a Trunk Between a Primary Switch and Secondary Switch 2-12
Ensuring Compatibility with Transparent Firewall Mode 2-12
Managing the Firewall Services Module Boot Partitions 2-12
Flash Memory Overview 2-13
Setting the Default Boot Partition 2-13
Resetting the FWSM or Booting from a Specific Partition 2-13
Resetting the FWSM in Cisco IOS Software 2-14
Resetting the FWSM in Catalyst Operating System Software 2-14
CHAPTER
3 Connecting to the Firewall Services Module and Managing the Configuration 3-1
Sessioning and Logging into the Firewall Services Module 3-1
Managing the Configuration at the CLI 3-3
Saving Configuration Changes 3-3
Viewing the Configuration 3-3
Clearing and Removing Configuration Settings 3-4
Creating Text Configuration Files Offline 3-4
CHAPTER
4 Configuring the Firewall Mode 4-1
Firewall Mode Overview 4-1
Routed Mode Overview 4-1
IP Routing Support 4-2
Network Address Translation 4-2
How Data Moves Through the FWSM in Routed Firewall Mode 4-3
Transparent Mode Overview 4-8