Cisco Systems protected ports

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
protected ports thcollicutt 12-15-05
Posted by on December 15, 2005, 2:06 pm
Please log in for more thread options
I have set up a series of ports as protected, and the servers cannot
talk to each other. The admins decided that 2 of the servers need to
talk to each other, now. I tried putting a rule in the firewall (the
switch is used as a DMZ hanging off of a Checkpoint firewall), but they
still don't seem to be able to talk and there is no record of any
packets inthe firewall logs.

ideas?


Posted by on December 15, 2005, 2:37 pm
Please log in for more thread options
If you define two ports on a switch as protected, they won't talk to
each other period. If your switch supports it, you want to look into
private vlans as a replacement for port protection.

-------------------------
Scott
http://tech.scottp.net


Posted by on December 16, 2005, 1:51 pm
Please log in for more thread options
I am suspecting there is more to it that previously thought. They
don't talk to each other when neither are protected.

On a closer inspection, one of the servers was never on a protected
port anyway.

I work for a provincial government in Canada. I take whatever
equipment I can get.


Similar ThreadsPosted
protected ports December 15, 2005, 2:06 pm
Checkpoint NG and Protected ports June 30, 2005, 10:51 am
Multiple Cisco 3500-XL and Protected ports. June 17, 2006, 1:33 am
Protected Ports Multi Switch Interaction March 29, 2007, 6:36 pm
871 and USB ports September 9, 2005, 11:58 am
ports in pix November 1, 2005, 6:44 pm
PIX & Ports August 18, 2006, 2:17 pm
QoS on some ports April 6, 2007, 8:23 am
PIX 501 LAN Ports May 5, 2008, 11:48 pm
AUX/Consol ports April 13, 2006, 7:54 am
trunk ports September 1, 2006, 6:46 pm
NAT doesn't seem to work on all ports June 14, 2005, 5:29 pm
range of ports in ACL on PIX? June 16, 2005, 2:53 pm
LANs and ports September 7, 2006, 1:21 pm
VPN Firewall ports September 8, 2006, 11:09 am