Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Can i configure PIX firewall vlan without connecting to internet

Status
Not open for further replies.

Billsg

Technical User
Feb 28, 2007
18
US
Hi
I am new to Cisco and I want to setup vlans using cisco 515e and catalyst 2850 switch. my question is can i configure these vlan connections on the firewall without connecting it to the internet. And later on I can connect to public internet.

Also is there any guidelines available that I can follow

Thanks
 
Thanks Brent
Sorry i am kind of new to this so forgive me if i am asking stupid question. Right now my network is connected with Sonic firewall and several small switches and I am replacing all those switches with one Cisco 2850 and create Vlan with Cisco PIX 515E. At this moment I dont want to touch other switches as it will interrupt the network. i have connected pix to the windows 2003 server and I want to configure Vlan, can i configure those ports on the switch for vlan without connecting to the network.
 
No problem.
You will need to do all of this at the cut over time. You can pre-setup the pix and switch together through the console cable. Double check that setup and confirm that it is working with a few test computers. Then the cut over should go a lot smoother.


Brent
Systems Engineer / Consultant
CCNP, CCSP
 
Thanks again,
One more question, my IT manager wants me to configure on the Vlan like this :
vlan98
1 port for Switch
1 port for internet connection(CSU/DSU)
2 ports free
I am confused that he asked one of the port on the switch to internet connection, shouldnt the internet connection be on one of the firewall ethernet port itself?
 
The internet connection should hang off the pix, not the switch. You can do it off the switch, but there are security risks and it is just harder to deal with.


Brent
Systems Engineer / Consultant
CCNP, CCSP
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top