|
Posted by shen on August 10, 2005, 12:29 am
If you were Registered and logged in, you could reply and use other advanced thread options
psykotic wrote:
> We just upgraded our edge router and added a juniper netscreen firewall
> to our network and I am trying to use the old 1721 for a core vlan
> router. Do you think it is possible to use the one ethernet port to do
> internal vlan routing, and push outbound internet traffic to another
> switchport (on vlan 1, the native vlan)where the trust interface of the
> firewall lies(192.168.1.1 255.255.255.0)? My problem is that I can get
> things working on the native vlan (vlan 1).........but no go
> workstations bound to other interfaces (10,20,30, etc.) Please let me
> know if it is possible via some tweaks to the config below, or if i
> just need to go purchase an ethernet wic to make this work. Thxs.
> The access list is something I am starting to build to stave off some
> of the p2p.......i know it is not a complete solution.
If your firewall supports dot1q,you can do it,but
You the better purchase an ethernet wic to make this work,it will make
your network more security.
|