Integrating Firewall/VPN with IPS and Layer 2 Firewalls

You can use FlexEdge Secure SD-WAN in the Firewall/VPN, IPS, and Layer 2 Firewall roles together for traffic inspection.

IP address blacklisting is a shared feature for Engine in the Firewall/VPN, IPS, and Layer 2 Firewall roles. Blacklisting allows blocking harmful traffic not just at the component that detects it, but also on other engines on the connection path.

Instead of using Engine in the IPS or Layer 2 Firewall role, you can also use layer 2 interfaces on Engines in the Firewall/VPN role for traffic inspection.