Firewall Wizards mailing list archives
Re: PIX Books
From: greg padden <paddeng () biostat wisc edu>
Date: Fri, 22 Oct 2004 10:51:12 -0700
I own 4 FWSM blades and cannot find any books on them.BTW, last night Cisco and I discovered a sev 1 bug on the FWSM running trasparent mode. Seems that there is a timing issue that causes two of the four etherchannel trunks to fail. This causes very strange problems with some pc's behind the fwsm not being able to connect to some (that right, some) external sites.
The two etherchannel trunks being down is what causes the strange behavior that some pc's on the lan behind the transparent virtual firewall could not get to some external and Internet sites, but could reach others. This is due to how the catalyst switch assigns traffic to each etherchannel trunk. The algorithm for assigning which etherchannel trunk to use is based on source ip, dest ip, and source mac address. That is why particular ip's had no problem and some had strange problems.
Shimon Silberschlag wrote:
Can anyone recommend a good book on PIX firewalls? Even better if the book covers FWSM (PIX blade). Our group is familiar with firewalls, just not the PIX, so it doesn't have to be a beginner's guide.TIA, Shimon Silberschlag +972-3-9351572 +972-50-7207130 _______________________________________________ firewall-wizards mailing list firewall-wizards () honor icsalabs com http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
_______________________________________________ firewall-wizards mailing list firewall-wizards () honor icsalabs com http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Current thread:
- PKI is the pits? Christopher Hicks (Oct 14)
- Re: PKI is the pits? Bennett Todd (Oct 14)
- RE: PKI is the pits? Eugene Kuznetsov (Oct 17)
- RE: PKI is the pits? Marcus J. Ranum (Oct 17)
- PIX Books Shimon Silberschlag (Oct 22)
- Re: PIX Books Josh Welch (Oct 22)
- Re: PIX Books greg padden (Oct 22)
- Re: PIX Books Matthew Powell (Oct 25)
- RE: PIX Books sci-admin (Oct 30)
- RE: PKI is the pits? Eugene Kuznetsov (Oct 22)
- RE: PKI is the pits? Marcus J. Ranum (Oct 17)