EasyManuals Logo
Home>Cisco>Switch>Catalyst 6500 Series

Cisco Catalyst 6500 Series User Manual

Cisco Catalyst 6500 Series
392 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #59 background imageLoading...
Page #59 background image
CHAPTER
4-1
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide
OL-6392-01
4
Configuring the Firewall Mode
This chapter describes how to set the firewall mode to either routed mode or transparent mode, and
includes the following sections:
Firewall Mode Overview, page 4-1
Setting the Firewall Mode, page 4-16
Firewall Mode Overview
The FWSM can run in two firewall modes:
Routed mode
Transparent mode
In routed mode, the FWSM is considered to be a router hop in the network. It performs NAT between
connected networks, and can use OSPF or passive RIP (in single context mode). Routed mode supports
up to 256 interfaces per context or in single mode, with a maximum of 1000 interfaces divided between
all contexts. Each interface is on a different subnet. You can share interfaces between contexts.
In transparent mode, the FWSM acts like a “bump in the wire,” or a “stealth firewall,” and is not a router
hop. The FWSM connects the same network on its inside and outside interfaces, but each interface must
be on a different VLAN. No dynamic routing protocols or NAT are required. However, like routed mode,
transparent mode also requires ACLs to allow traffic through. Transparent mode can allow certain types
of traffic in an ACL that are blocked by routed mode, including unsupported routing protocols and
multicast traffic. Transparent mode can also optionally use EtherType ACLs to allow non-IP traffic.
Transparent mode only supports two interfaces, an inside interface and an outside interface.
This section includes the following topics:
Routed Mode Overview, page 4-1
Transparent Mode Overview, page 4-8
Routed Mode Overview
This section includes the following topics:
IP Routing Support, page 4-2
Network Address Translation, page 4-2
How Data Moves Through the FWSM in Routed Firewall Mode, page 4-3

Table of Contents

Other manuals for Cisco Catalyst 6500 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Catalyst 6500 Series and is the answer not in the manual?

Cisco Catalyst 6500 Series Specifications

General IconGeneral
BrandCisco
ModelCatalyst 6500 Series
CategorySwitch
LanguageEnglish

Related product manuals