Add inline interfaces to Layer 2 Firewalls

There are two interfaces in an inline interface. The traffic is forwarded from one interface to the other.

The traffic that the Layer 2 Firewall allows goes through the inline interface as if it was going through a network cable. The Layer 2 Firewall drops the traffic you want to stop.

Inline interfaces are associated with a Logical Interface element. The Logical Interface is used in the Layer 2 Firewall Policy and the traffic inspection process to represent one or more Layer 2 Firewall interfaces.

For more details about the product and how to configure features, click Help or press F1.

Steps

  1. Right-click the Layer 2 Firewall and select Edit <element type>.
    The Engine Editor opens.
  2. In the navigation pane on the left, browse to Interfaces.
  3. Right-click the empty space and select New Physical Interface.
  4. From the Interface ID drop-down list, select an ID number.
  5. From the Type drop-down list, select Inline Interface.
  6. (Optional) From the Second Interface ID drop-down list, change the automatically selected interface ID.
  7. If your configuration requires you to change the logical interface from Default_Eth, select the logical interface in one of the following ways:
    • Select an existing Logical Interface element from the list.
    • Click Select and browse to another Logical Interface element.
    • Click New to create a Logical Interface element, then click OK.
  8. If you want the Layer 2 Firewall engine to inspect traffic also from VLANs that are not included in the engine’s interface configuration, leave Inspect Unspecified VLANs selected.
  9. If you want the Layer 2 Firewall engine to inspect double-tagged VLAN traffic, leave Inspect QinQ selected.
  10. Click OK.
  11. Click Save, then close the Engine Editor.

Next steps

Bind engine licenses to Layer 2 Firewall elements.