
xxxii
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
OL-20748-01
Quick Start Steps
Transparent Firewall Minimum Configuration Steps
To configure the FWSM in transparent mode, perform the following steps:
Step 9
Configure routing using one of these methods:
•
Configuring a Static Route, page 8-3
•
Configuring BGP Stub Routing, page 8-6
•
(Single context mode only)
Configuring OSPF, page 8-9
•
(Single context mode only)
Configuring EIGRP,
page 8-22
•
(Single context mode only)
Configuring RIP, page 8-21
In multiple context mode, static routing and stub BGP
is the only routing method supported. In single mode,
you have a choice of static, stub BGP, RIP, EIGRP, or
OSPF.
Step 10
(Might be required) Use one or more of these NAT methods:
•
Using Dynamic NAT and PAT, page 16-19
•
Using Static NAT, page 16-29
•
Using Static PAT, page 16-31
Configure NAT if you use private addresses, or want
the extra security.
Step 11
Adding an Extended ACE, page 13-7
Before any traffic can go through the FWSM, you
must create an access list that permits traffic.
Step 12
Applying an Access List to an Interface, page 15-4
Apply the access list to an interface.
Task
Description
Task
Description
Step 1
Assigning VLANs to the Firewall Services Module, page 2-2
On the switch, you need to assign VLANs to the
FWSM so that the FWSM can send and receive traffic
on the switch.
Step 2
(Might be required)
Adding Switched Virtual Interfaces to
the MSFC, page 2-4
If you want the MSFC to route between VLANs that
are assigned to the FWSM, complete this procedure.
Step 3
Connecting to the Firewall Services Module, page 3-1
From the switch CLI, you can session into the FWSM
to access the FWSM CLI.
Step 4
(Might be required; multiple context mode only)
Enabling or
Disabling Multiple Context Mode, page 4-10
If you want to use multiple context mode and your
FWSM is not already configured for it, or if you want
to change back to single mode, follow this procedure.
Step 5
(Multiple context mode only)
Configuring a Security
Context, page 4-27
Add a security context.
Step 6
(Multiple context mode only)
Changing Between Contexts
and the System Execution Space, page 4-31
Because you must configure some settings in the
system execution space and some settings within the
context, you need to know how to switch between
contexts and the system execution space.
Step 7
Setting Transparent or Routed Firewall Mode, page 5-17
Before you configure any settings, you must set the
firewall mode to transparent mode. Changing the
mode clears your configuration. In multiple context
mode, set the mode in each context.
Summary of Contents for 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion
Page 35: ...P A R T 1 Getting Started and General Information ...
Page 36: ......
Page 297: ...P A R T 2 Configuring the Security Policy ...
Page 298: ......
Page 521: ...P A R T 3 System Administration ...
Page 522: ......
Page 613: ...P A R T 4 Reference ...
Page 614: ......