SonicWall Switch Getting Started Guide
Configuring Basic Topologies
70
Configuring HA and PortShield With a
Common Uplink
In this configuration with PortShield functionality in HA mode, a link between the active/standby firewalls and
the Switch serves as a common uplink to carry all the portshielded traffic. Firewall interfaces that serve as
PortShield hosts are connected to a separate Switch (not necessarily a Switch) and not the same Switch
connected to the active and standby units. This other Switch avoids the looping of packets for the same
PortShield VLAN. The PortShield members can be connected to ports on the Switch that is controlled by the
active/standby firewalls.
HA Pair Using a Common Switch Topology
shows a firewall pair and two Switches. The link between X3 and
Switch 1 is set up as a common uplink. Similarly, the link between X2 and Switch 2 is set up as a common uplink.
The PortShield hosts X0 are connected to a different Switch (which could be a SonicWall Switch or any other
vendor’s Switch) to avoid looping of packets. Ports 10 on both Switch 1 and Switch 2 are portshielded to X0, and
hosts connected to Ports 10 on both Switches can communicate using the common uplink.
HA Pair Using a Common Switch Topology
To set up HA with a common uplink:
1 Add the Switch and set up the data uplink.
2 On the
Network > Interfaces
page, configure these interfaces for both firewalls:
NOTE:
Add Switches manually after creating the HA pair. Activating HA mode after Switches are
added will not work.
X0
LAN/PortShield host
X1
WAN