Forum Discussion
ahmad_2312
Nimbostratus
Feb 27, 2010PIX Firewall Keep Blocking F5
Hello;
during the configuration of F5, we had to share multiple IP Addresses within one interface so (for example):
10.10.10.1
10.10.10.2
10.10.10.3
are using 1.1 interface and one MAC Address, so due to ARP error in PIX due to such behavior of F5, the F5 get blocked !!
is there any solution except having each IP Address in different interface ?
- The_Bhattman
Nimbostratus
Hi Ahmad, - ahmad_2312
Nimbostratus
we didnt find any error messages - hoolio
Cirrostratus
I think you'll want to figure out how to configure the PIX to allow multiple IP addresses to use the same MAC address. I expect there is a simple option for "spoofing" or something related that could be disabled to allow this (assuming you're able to make this change). - The_Bhattman
Nimbostratus
I would also open a TAC case with Cisco because the level of blocking doesn't exists without an explicit permit statement and only that is supported after 6.3 code of the pix - which I never seen done out in the wild. Sounds more like a bug then an actual or misconfiguration issue.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects