S E C U R I T Y Z O N E S A N D I N T E R F A C E S
Advanced Interface Settings
3-22
Security Appliance User Guide
Version 3R2
3
Ability to bypass/pass non-ip Broadcast/Multicast traffic
set transparent bypass-bmcast
This command will bypass (i.e., drop) non-ip broadcast and multicast
packets. The default behavior of the freeGuard Blaze 2100 is to pass (i.e.
allow) such packets.
G U I E X A M P L E : P A S S N O N - I P B R O A D C A S T P A C K E T S I N
T R A N S P A R E N T M O D E
Check the Non-IP Broadcast option and click
Apply
.
Ability to bypass/pass DDOS traffic
unset transparent bypass-ddos
This command allows DDOS attacks and packets to traverse the
freeGuard Blaze 2100. The default behavior of the freeGuard Blaze 2100
is to bypass (i.e., drop) such packets.
G U I E X A M P L E : B Y P A S S D O S A N D D D O S C H E C K I N G I N
T R A N S P A R E N T M O D E
Check the DDoS option and click
Apply
.
Ability to bypass/pass VLAN Policy filtering
unset transparent bypass-vlan-policy
This command will enable the Transparent-VLAN function covered in
Transparent Mode VLAN Filtering on page 3 - 18
. The default behavior is
to use the source physical ingress port for source zone derivation.
. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
A D V A N C E D I N T E R F A C E S E T T I N G S
If you choose to use advanced interface settings, you can modify the
following elements of the security appliance:
•
Configuring Maximum Transmission Unit (MTU) Settings
•
Configuring Interface Link Up/Down
•
Configuring Address Resolution Protocol (ARP)
)
•
Enabling Interface Management