EasyManuals Logo

Cisco 4200 Series User Manual

Cisco 4200 Series
74 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #26 background imageLoading...
Page #26 background image
8-Port 1000Base-T Network Module with Hardware Bypass
The Secure Firewall 4200 chassis has two network module slots named NM-2 and NM-3 (left to right on the
front panel). Network modules are optional, removable I/O modules that provide either additional ports or
different interface types. The network module plugs into the chassis on the front panel. See Front Panel, on
page 8 for the location of the network module slots on the chassis.
FPR4K-XNM-8X1GF is an 8-port 1000Base-T hardware bypass network module. The eight ports are numbered
from top to bottom, left to right. Ports 1 and 2, 3 and 4, 5 and 6, and 7 and 8 are paired for hardware bypass
mode. In hardware bypass mode, data is not processed by the Secure Firewall 4200 but is routed to the paired
port.
Hardware bypass (also known as fail-to-wire) is a physical layer (Layer 1) bypass that allows paired interfaces
to go into bypass mode so that the hardware forwards packets between these port pairs without software
intervention. Hardware bypass provides network connectivity when there are software or hardware failures.
Hardware bypass is useful on ports where the secure firewall is only monitoring or logging traffic. The
hardware bypass network modules have a switch that is capable of connecting the two ports when needed.
Hardware bypass is only supported with threat defense, although you can use these modules in nonbypass
mode in threat defense or ASA.
Note
Hardware bypass is supported only on a fixed set of ports. You can pair Port 1 with Port 2, Port 3 with Port
4, but you cannot pair Port 1 with Port 4 for example.
When the appliance switches from normal operation to hardware bypass or from hardware bypass back to
normal operation, traffic may be interrupted for several seconds. A number of factors can affect the length of
the interruption; for example, behavior of the link partner such as how it handles link faults and debounce
timing; spanning tree protocol convergence; dynamic routing protocol convergence; and so on. During this
time, you may experience dropped connections.
Note
If you have an inline interface set with a mix of hardware bypass and nonhardware bypass interfaces, you
cannot enable hardware bypass on this inline interface set. You can only enable hardware bypass on an inline
interface set if all the pairs in the inline set are valid hardware bypass pairs.
Note
The hardware and the system support hot swapping if you are replacing a network module with the same type
of network module. If you replace the 8-port 10/100/1000Base-T network module with another supported
network module, you must reboot the chassis so that the new network module is recognized. See the
configuration guide for your operating system for the detailed procedures for managing network modules.
Note
Cisco Secure Firewall 4200 Series Hardware Installation Guide
22
Overview
8-Port 1000Base-T Network Module with Hardware Bypass

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 4200 Series and is the answer not in the manual?

Cisco 4200 Series Specifications

General IconGeneral
BrandCisco
Model4200 Series
CategoryProjector Accessories
LanguageEnglish

Related product manuals