Appliance Configuration
Check Point 1400 Appliances Centrally Managed Administration Guide R77.20.85 | 65
The page also lets you:
•
Configure multiple
switches
(port based VLANs) between the available local LAN interfaces
and wireless networks. Between the LAN ports of a switch, traffic is not monitored or
inspected.
Note
- MAC filtering is disabled on switch networks. To enforce MAC filtering on a
network with several ports, use bridge.
•
Configure multiple
bridges
between interfaces. Traffic in a bridge is always monitored and
inspected by the appliance.
•
Create and configure tag based
VLANs
(802.1q) on any of the LAN interfaces or DMZ.
•
Create and configure
VPN tunnels (VTI)
which can be used to create routing rules which
determine which traffic is routed through the tunnel and therefore also encrypted (Route
based VPN).
•
On wireless devices - Add new
wireless networks
(
Virtual Access Points
). This can also be
done through the
Device
>
Wireless
page.
There are two radio transmitters: 2.4 GHz and 5 GHz. Each network is configured separately
under a specified transmitter.
You can also use unassigned LAN ports to create an internet connection. In the table, these ports
have the status
Assigned to Internet
.
Notes:
•
LAN ports assigned to internet connections can only be disabled from the
Internet
page.
•
You cannot edit a LAN port assigned to an internet connection. When you click
Edit
, the window
opens, but when you click
Apply
, a warning shows that this deletes the connection.
•
When you create a bridge or switch surface, these LAN ports do not appear in the selection box
as optional ports.
To create any of the above options:
Click
New
and choose the option you want.
To edit/delete/enable/disable any of the above options:
Select the relevant row and click
Edit/Delete/Enable/Disable
.
Notes:
•
Physical interfaces cannot be deleted.
•
Editing an interface that is part of a switch or a bridge lets you remove it from the switch or
bridge.
•
When a LAN or DMZ interface is part of an Internet connection, it is still visible on this page,
but can be only be configured through the
Device
>
Internet
page.
•
For each network, the table on this page shows you:
•
Name - Name of the network, interfaces that participate (if there are multiple interfaces),
and a description (optional)
•
Local IP Address
•
Subnet Mask
•
MAC Address
Содержание L-71
Страница 122: ......