I have an 837 that won't pass traffic from eth0 to the internet. The statically addressed hosts attached to the 1548M switch are in the same subnet as eth0, and there is a default route to pass eth0 traffic to atm0.1, but I seem to have brick wall between eth0 and atm0.
When I set-up a logging access list permitting traffic in both directions on eth0 and atm0, I can see traffic hitting eth0 from the switch, and can see inbound traffic hitting atm0 from the internet. The speed & duplex on the switch and the router are the same (not autodetect).
I can successfully ping out from atm0 to internet & see traffic coming back. I also see corresponding CDP neighbor adjacency on both the switch connected to eth0 and the 837. I can ping eth0 from a workstation attached to the switch, but cannot ping the internet from the same workstation.
I have run the show tech thru the Cisco Output Intepreter and see no meaningful trouble, but I can find no real reason why I can't seem to pass traffic from eth0 to the internet. There's no reason for me to NAT in this scenario.
I have used the SAME basic config on an 827 & 1720 (and it works), and the ONLY thing I need to pass traffic to the internet is the basic default route: ip route 0.0.0.0 0.0.0.0 ATM0.1
Can anyone tell me why I can't pass traffic to the internet ? Am I missing something really basic here? ===========================================
Current configuration : 1468 bytes ! version 12.3 no service pad service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname 837 ! boot-start-marker boot-end-marker ! memory-size iomem 5 ! no aaa new-model ip subnet-zero ! ! ip audit notify log ip audit po max-events 100 ip ssh break-string no ftp-server write-enable ! ! no crypto isakmp enable ! ! interface Ethernet0 description INSIDE INTERFACE ip address 10.10.10.1 255.0.0.0 hold-queue 100 out ! interface ATM0 description OUTSIDE INTERFACE mac-address 0004.9a87.1bb8 no ip address no ip unreachables no ip proxy-arp ip accounting access-violations no ip mroute-cache logging event subif-link-status no atm ilmi-keepalive bundle-enable dsl operating-mode ansi-dmt dsl enable-training-log hold-queue 224 in ! interface ATM0.1 point-to-point description "EXTERNAL INTERFACE" ip address (not shown) no ip unreachables no ip proxy-arp ip nat outside no ip mroute-cache timeout absolute 35790 0 pvc 0/35 protocol ip (not shown) ! ! ip classless ip route 0.0.0.0 0.0.0.0 ATM0.1 no ip http server no ip http secure-server ! ! control-plane ! ! line con 0 no modem enable transport preferred all transport output all line aux 0 transport preferred all transport output all line vty 0 4 login transport preferred all transport input all transport output all ! scheduler max-task-time 5000 ! end
======================== Here's the show CDP neighbor output...
1548m#sho cdp neigh Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge S - Switch, P - Repeater, H - Host I - IGMP DeviceID IP Addr Local Port Capability Platform Remote Port 837 10.10.10.1 fa 0/1 R Cisco C837 Ethernet0837#sho cdp neigh Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge S - Switch, H - Host, I - IGMP, r - Repeater
Device ID Local Intrfce Holdtme Capability Platform Port ID
1548m MAC:0090F2 B13EF1 Eth 0 179 T S 1548m Fas 0/1