So I need a ton of DMZ ports all of a sudden. I know that the PIX supports VLAN's, and I also know that the PIX will not route out of the same interface that the packet comes in on. So, if I create say 5 VLAN's (non-routable on the switch) and trunk it to the firewall will I be able to create rules to allow traffic to the different VLAN's?
Example, I have VLAN 10,11,12 on the switch with no IP addresses. I create logical interfaces on the PIX as everyone's gateway. Rules permitting, can I allow a computer in VLAN 10 to talk to a computer in VLAN 11?
Thanks!