Chapter 13 Interfaces
ZyWALL USG 1000 User’s Guide
309
Each VLAN is a separate network with separate IP addresses, subnet masks, and
gateways. Each VLAN also has a unique identification number (ID). The ID is a 12-
bit value that is stored in the MAC header. The VLANs are connected to switches,
and the switches are connected to the router. (If one switch has enough
connections for the entire network, the network does not need switches
A
and
B
.)
• Traffic inside each VLAN is layer-2 communication (data link layer, MAC
addresses). It is handled by the switches. As a result, the new switch is required
to handle traffic inside VLAN 2. Traffic is only broadcast inside each VLAN, not
each physical network.
• Traffic between VLANs (or between a VLAN and another type of network) is
layer-3 communication (network layer, IP addresses). It is handled by the
router.
This approach provides a few advantages.
• Increased performance - In VLAN 2, the extra switch should route traffic inside
the sales department faster than the router does. In addition, broadcasts are
limited to smaller, more logical groups of users.
• Higher security - If each computer has a separate physical connection to the
switch, then broadcast traffic in each VLAN is never sent to computers in
another VLAN.
• Better manageability - You can align network policies more appropriately for
users. For example, you can create different content filtering rules for each
VLAN (each department in the example above), and you can set different
bandwidth limits for each VLAN. These rules are also independent of the
physical network, so you can change the physical network without changing
policies.
In this example, the new switch handles the following types of traffic:
• Inside VLAN 2.
• Between the router and VLAN 1.
• Between the router and VLAN 2.
• Between the router and VLAN 3.
VLAN Interfaces Overview
In the ZyWALL, each VLAN is called a VLAN interface. As a router, the ZyWALL
routes traffic between VLAN interfaces, but it does not route traffic within a VLAN
interface. All traffic for each VLAN interface can go through only one Ethernet
interface, though each Ethernet interface can have one or more VLAN interfaces.
Note: Each VLAN interface is created on top of only one Ethernet interface.
Otherwise, VLAN interfaces are similar to other interfaces in many ways. They
have an IP address, subnet mask, and gateway used to make routing decisions.
Содержание ZyWALL 1050
Страница 2: ......
Страница 30: ...Table of Contents ZyWALL USG 1000 User s Guide 30 ...
Страница 31: ...31 PART I User s Guide ...
Страница 32: ...32 ...
Страница 38: ...Chapter 1 Introducing the ZyWALL ZyWALL USG 1000 User s Guide 38 ...
Страница 46: ...Chapter 2 Features and Applications ZyWALL USG 1000 User s Guide 46 ...
Страница 64: ...Chapter 3 Web Configurator ZyWALL USG 1000 User s Guide 64 ...
Страница 74: ...Chapter 4 Installation Setup Wizard ZyWALL USG 1000 User s Guide 74 ...
Страница 116: ...Chapter 6 Configuration Basics ZyWALL USG 1000 User s Guide 116 ...
Страница 168: ...Chapter 7 Tutorials ZyWALL USG 1000 User s Guide 168 ...
Страница 205: ...Chapter 8 L2TP VPN Example ZyWALL USG 1000 User s Guide 205 ...
Страница 206: ...Chapter 8 L2TP VPN Example ZyWALL USG 1000 User s Guide 206 ...
Страница 207: ...207 PART II Technical Reference ...
Страница 208: ...208 ...
Страница 222: ...Chapter 9 Dashboard ZyWALL USG 1000 User s Guide 222 ...
Страница 264: ...Chapter 10 Monitor ZyWALL USG 1000 User s Guide 264 ...
Страница 285: ...Chapter 13 Interfaces ZyWALL USG 1000 User s Guide 285 Figure 244 Configuration Network Interface Ethernet Edit ...
Страница 302: ...Chapter 13 Interfaces ZyWALL USG 1000 User s Guide 302 Figure 250 Configuration Network Interface Cellular Add ...
Страница 312: ...Chapter 13 Interfaces ZyWALL USG 1000 User s Guide 312 Figure 254 Configuration Network Interface VLAN Edit ...
Страница 322: ...Chapter 13 Interfaces ZyWALL USG 1000 User s Guide 322 Figure 256 Configuration Network Interface Bridge Add ...
Страница 336: ...Chapter 13 Interfaces ZyWALL USG 1000 User s Guide 336 ...
Страница 346: ...Chapter 14 Trunks ZyWALL USG 1000 User s Guide 346 ...
Страница 362: ...Chapter 15 Policy and Static Routes ZyWALL USG 1000 User s Guide 362 ...
Страница 376: ...Chapter 16 Routing Protocols ZyWALL USG 1000 User s Guide 376 ...
Страница 396: ...Chapter 19 NAT ZyWALL USG 1000 User s Guide 396 ...
Страница 401: ...Chapter 20 HTTP Redirect ZyWALL USG 1000 User s Guide 401 ...
Страница 402: ...Chapter 20 HTTP Redirect ZyWALL USG 1000 User s Guide 402 ...
Страница 424: ...Chapter 23 Authentication Policy ZyWALL USG 1000 User s Guide 424 ...
Страница 442: ...Chapter 24 Firewall ZyWALL USG 1000 User s Guide 442 ...
Страница 449: ...Chapter 25 IPSec VPN ZyWALL USG 1000 User s Guide 449 Figure 323 Configuration VPN IPSec VPN VPN Connection Edit IKE ...
Страница 460: ...Chapter 25 IPSec VPN ZyWALL USG 1000 User s Guide 460 Figure 326 Configuration VPN IPSec VPN VPN Gateway Edit ...
Страница 483: ...Chapter 25 IPSec VPN ZyWALL USG 1000 User s Guide 483 ...
Страница 484: ...Chapter 25 IPSec VPN ZyWALL USG 1000 User s Guide 484 ...
Страница 497: ...Chapter 26 SSL VPN ZyWALL USG 1000 User s Guide 497 ...
Страница 498: ...Chapter 26 SSL VPN ZyWALL USG 1000 User s Guide 498 ...
Страница 508: ...Chapter 27 SSL User Screens ZyWALL USG 1000 User s Guide 508 ...
Страница 510: ...Chapter 28 SSL User Application Screens ZyWALL USG 1000 User s Guide 510 ...
Страница 518: ...Chapter 29 SSL User File Sharing ZyWALL USG 1000 User s Guide 518 ...
Страница 603: ...Chapter 34 IDP ZyWALL USG 1000 User s Guide 603 ...
Страница 604: ...Chapter 34 IDP ZyWALL USG 1000 User s Guide 604 ...
Страница 614: ...Chapter 35 ADP ZyWALL USG 1000 User s Guide 614 Figure 416 Profiles Protocol Anomaly ...
Страница 625: ...Chapter 35 ADP ZyWALL USG 1000 User s Guide 625 ...
Страница 626: ...Chapter 35 ADP ZyWALL USG 1000 User s Guide 626 ...
Страница 658: ...Chapter 37 Content Filter Reports ZyWALL USG 1000 User s Guide 658 ...
Страница 676: ...Chapter 38 Anti Spam ZyWALL USG 1000 User s Guide 676 ...
Страница 698: ...Chapter 39 Device HA ZyWALL USG 1000 User s Guide 698 ...
Страница 714: ...Chapter 40 User Group ZyWALL USG 1000 User s Guide 714 ...
Страница 720: ...Chapter 41 Addresses ZyWALL USG 1000 User s Guide 720 ...
Страница 732: ...Chapter 43 Schedules ZyWALL USG 1000 User s Guide 732 ...
Страница 748: ...Chapter 45 Authentication Method ZyWALL USG 1000 User s Guide 748 ...
Страница 770: ...Chapter 46 Certificates ZyWALL USG 1000 User s Guide 770 ...
Страница 782: ...Chapter 48 SSL Application ZyWALL USG 1000 User s Guide 782 ...
Страница 788: ...Chapter 49 Endpoint Security ZyWALL USG 1000 User s Guide 788 Figure 502 Configuration Object Endpoint Security Add ...
Страница 792: ...Chapter 49 Endpoint Security ZyWALL USG 1000 User s Guide 792 ...
Страница 844: ...Chapter 50 System ZyWALL USG 1000 User s Guide 844 ...
Страница 861: ...Chapter 51 Log and Report ZyWALL USG 1000 User s Guide 861 ...
Страница 862: ...Chapter 51 Log and Report ZyWALL USG 1000 User s Guide 862 ...
Страница 886: ...Chapter 54 Reboot ZyWALL USG 1000 User s Guide 886 ...
Страница 888: ...Chapter 55 Shutdown ZyWALL USG 1000 User s Guide 888 ...
Страница 908: ...Chapter 56 Troubleshooting ZyWALL USG 1000 User s Guide 908 ...
Страница 916: ...Chapter 57 Product Specifications ZyWALL USG 1000 User s Guide 916 ...
Страница 1070: ...Appendix E Open Software Announcements ZyWALL USG 1000 User s Guide 1070 ...
Страница 1101: ...Index ZyWALL USG 1000 User s Guide 1101 ...