Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
avilt
New Contributor

200E in Transparent Mode

I have a flat subnet (single subnet). Can I implement 200E firewall in transparent mode to enforce firewall policies?

I have a couple of servers at my location which will be connected to a difference location. At the moment all are in a flat subnet and changing IP schema is ruled out.

 

10 REPLIES 10
ericli_FTNT
Staff
Staff

avilt wrote:

I have a flat subnet (single subnet). Can I implement 200E firewall in transparent mode to enforce firewall policies?

I have a couple of servers at my location which will be connected to a difference location. At the moment all are in a flat subnet and changing IP schema is ruled out.

 

Hi there,

 

So your network in layer-2 level, should be isolated by the TP firewall. I mean, if you put your TP firewall between your clients and servers, then these two sides should be isolated in layer 2.

 

Plugging 2 ports of TP firewall into one vlan would cause layer 2 loop and create broadcasting storm throughout your network.

 

You put server side and clients side into two vlans, and create a policy to connect these 2 vlans, so you could implement a policy to filter ARP between them.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors