From: anthony.sequeira@thomson.com
Date: Wed Apr 11 2007 - 19:17:32 ART
Errr - I just realized I might have answered too quickly here and not
read your original post closely enough....
It sounds like you want OSPF traffic to pass THROUGH the Transparent
Firewall. This should be permitted as long as your Extended ACL provides
the appropriate permissions.
So I would check your ACL carefully - and then check your guidelines on
Transparent Firewalling:
* Each directly connected network must be on the same subnet
* A management IP address is required and must be on the same subnet
* Each interface must be a different VLAN interface
Anthony J. Sequeira
#15626
-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Sequeira, Anthony (NETg)
Sent: Wednesday, April 11, 2007 5:35 PM
To: nemthuduc@gmail.com; ccielab@groupstudy.com
Subject: RE: OSPF over ASA transparent mode
The following features are not supported in Transparent Mode:
* DYNAMIC ROUTING PROTOCOLS
* NAT
* IPv6
* DHCP Relay
* QoS
* Multicast
* VPN Termination for Through Traffic
Anthony J Sequeira
#15626
-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
nem chua
Sent: Wednesday, April 11, 2007 4:55 PM
To: Cisco certification
Subject: OSPF over ASA transparent mode
Hello,
Anyone ran this before? When I had the asa firewall run ospf it works
fine. I tried running asa firewall in transparent mode, access-list
wide
open for ip any any, and ospf any any. All traffic pass fine, but ospf
will
not form an adjacency and stuck in INIT state. If I plug the router on
each
end directly, bypassing the firewall it works fine. Any idea?
This archive was generated by hypermail 2.1.4 : Tue May 01 2007 - 08:28:35 ART