Integrating Engine/VPN with IPS and Layer 2 Engines
You can use Secure SD-WAN in the Engine/VPN, IPS, and Layer 2 Engine roles together for traffic inspection.
IP address Block Listing is a shared feature for Secure SD-WAN in the Engine/VPN, IPS, and Layer 2 Engine roles. Block Listing allows blocking harmful traffic not just at the component that detects it, but also on other engines on the connection path.
Instead of using Secure SD-WAN Engines in the IPS or Layer 2 Engine role, you can also use layer 2 interfaces on Secure SD-WAN Engines in the Engine/VPN role for traffic inspection.