首页 > 其他 > 详细

Cyber Security - Palo Alto Firewall Interface Types

时间:2020-03-14 17:33:36      阅读:89      评论:0      收藏:0      [点我收藏+]

Multiple options to integrate the Palo Alto Firewall into your:

  • Network
  • Layer 2 interfaces and VLAN interfaces
  • Layer 3 interfaces
  • Tap interfaces
  • Loopback and tunnel interfaces
  • HA interfaces

Type 1 - Layer 2 interfaces:

  • Allows a Trunk interface to transmit
  • Tagged VLAN‘s which can be assigned to VLAN interfaces
  • Can be allocated in port channels (link aggregation with LACP)

 技术分享图片

 

 

 Configure a Layer2 interface with Wired-VLAN20.技术分享图片

 

 

 Add a layer2 subinterface.

技术分享图片

 

 

 

Add a Wireless-VLAN30 subinterface.

技术分享图片

 

 

 

Type2 - Layer 3 interfaces:

  • Carries end-to-end Layer 3 traffic with an assigned IP address.
  • Can be allocated in port channels(link aggregation with LACP)
  • Can be sub-divided in L3 Subinterfaces.

技术分享图片

Add a layer3 interface.

技术分享图片

技术分享图片

技术分享图片

 

 Type3 - Tunnel and loopback interfaces:

  • Used to logically assign attributes to tunnel entry/exit points
  • Loopbacks: Create always-on logical interfaces for required applications.

 技术分享图片

 

 Configure a tunnel.技术分享图片

 

 Confiture Loopback

技术分享图片

 

 技术分享图片

 

 技术分享图片

 

 Configure Virtual Router

技术分享图片

 

 Configure IPsec Tunnels here.

技术分享图片

 

 

Typer 4 - HA(High availability interfaces):

  • Allows connectively between two Palo Alto Firewalls to establish a highly available Firewall setup
  • HA links will carry required information to build the cluster, and sync routing/configuration across the members.

技术分享图片

 

 Configure HA interface.技术分享图片

 

 Enable HA setup.

技术分享图片

 

 Configure the Control Link.技术分享图片

 https://docs.paloaltonetworks.com/pan-os/7-1/pan-os-admin/high-availability/set-up-activepassive-ha/configure-activepassive-ha

Cyber Security - Palo Alto Firewall Interface Types

原文:https://www.cnblogs.com/keepmoving1113/p/12483100.html

(0)
(0)
   
举报
评论 一句话评论(0
关于我们 - 联系我们 - 留言反馈 - 联系我们:wmxa8@hotmail.com
© 2014 bubuko.com 版权所有
打开技术之扣,分享程序人生!