
5-2
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
OL-20748-01
Chapter 5 Configuring the Firewall Mode
Routed Mode Overview
How Data Moves Through the FWSM in Routed Firewall Mode
This section describes how data moves through the FWSM in routed firewall mode, and includes the
following topics:
•
An Inside User Visits a Web Server, page 5-2
•
An Outside User Visits a Web Server on the DMZ, page 5-3
•
An Inside User Visits a Web Server on the DMZ, page 5-4
•
An Outside User Attempts to Access an Inside Host, page 5-5
•
A DMZ User Attempts to Access an Inside Host, page 5-6
An Inside User Visits a Web Server
Figure 5-1
shows an inside user accessing an outside web server.
Figure 5-1
Inside to Outside
The following steps describe how data moves through the FWSM (see
Figure 5-1
):
1.
The user on the inside network requests a web page from www.example.com.
2.
The FWSM receives the packet and because it is a new session, the FWSM verifies that the packet
is allowed according to the terms of the security policy (access lists, filters, AAA).
Web Server
10.1.1.3
www.example.com
User
10.1.2.27
209.165.201.2
10.1.1.1
10.1.2.1
Source Addr Translation
209.165.201.10
10.1.2.27
Outside
Inside
DMZ
92888
FWSM
Summary of Contents for 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion
Page 35: ...P A R T 1 Getting Started and General Information ...
Page 36: ......
Page 297: ...P A R T 2 Configuring the Security Policy ...
Page 298: ......
Page 521: ...P A R T 3 System Administration ...
Page 522: ......
Page 613: ...P A R T 4 Reference ...
Page 614: ......