Cisco Cisco Catalyst 6500 Series 7600 Series Wireless Services Module (WiSM) Referencia técnica

Descargar
Página de 61
49
Configuring a Cisco Wireless Services Module and Wireless Control System
OL-8981-01
Mod  Sub-Module                  Model              Serial       Hw     Status 
---- --------------------------- ------------------ ----------- ------- -------
  3  Centralized Forwarding Card FARFEL             SAD092608SU  0.2    Ok
  4  IEEE Voice Daughter Card    WS-F6K-FE48-AF     SAD082007YH  1.1    Ok
  5  Policy Feature Card 3       WS-F6K-PFC3BXL     SAL091597AS  1.6    Ok
  5  MSFC3 Daughterboard         WS-SUP720          SAL09158X9K  2.3    Ok
Mod  Online Diag Status 
---- -------------------
  2  Pass
  3  Pass
  4  Pass
  5  Pass
  6  Pass
The VPN designates one of these logical GE ports as the VPN inside port and the other logical GE port 
as the VPN outside port. The designation of which VPN port is the inside and outside port is fixed and 
cannot be changed. Port 1 is always treated as the VPNSM inside port, and Port 2 is always treated as 
the VPNSM outside port. The VPN inside port is used to transfer data to and from the Catalyst inside 
ports, and the VPN outside port is used to transfer data to and from the Catalyst outside ports, as shown 
in Figure 22.
Figure 41
Catalyst and VPN Inside and Outside Ports
Normally, the Catalyst outside ports are connected either directly to the LAN/WAN or to a WAN device 
that connects to an external network. The VPN outside port is grouped with the Catalyst outside ports 
so the VPN processing of packets comes into the VPNSM. You need to place the VPN outside port and 
the Catalyst outside ports in the same VLAN to accomplish this. This VLAN is normally set as a Layer 
2 VLAN, and no associated VLAN interface is set on the MSFC. However, to interoperate with the Cisco 
WiSM, the VLAN interface that is associated with the VPN outside interface is set up as a Layer 3 
interface. 
An interface VLAN is created on the MSFC. This port is placed in the same VLAN as the VPN inside 
port. This interface VLAN has the security configuration assigned to it. For instance, any crypto maps 
that are configured are usually applied to this VLAN interface. Do not add any other ports to this VLAN. 
Cisco recommends that any Catalyst inside ports use the PFC to L3 switch data to the VPNSM.