Figure 7: Incoming Traffic from Inside Networks
Transparent Firewall Instances
For transparent firewalls, you must use unique interfaces. The following figure shows a packet destined to a
host on the Instance C inside network from the internet. The classifier assigns the packet to Instance C because
the ingress interface is Ethernet 1/2.3, which is assigned to Instance C.
Multi-Instance Mode for the Secure Firewall 3100
9
Multi-Instance Mode for the Secure Firewall 3100
Classification Examples