EasyManua.ls Logo

SonicWALL NSA 4600 - Determining the WAN Type

SonicWALL NSA 4600
63 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
20
SonicWallNSA2600/3600/4600/5600/6600GettingStartedGuide
DeterminingtheWANType
BeforeconfiguringyourSonicWallNSAappliance,youneedto
determinethetypeofWANconnectionthatyoursetupwill
use.SonicWallsupportsthefollowingtypes:
•Static—Configurestheapplianceforanetworkthatuses
staticIPaddres ses.
•DHCP—ConfigurestheappliancetorequestIPsettings
fromaDHCPserverontheInternet.
•PPPoE
—PointtoPointProtocoloverEthernet(PPPoE)is
typicallyusedwithaDSLmodem.IfyourISPrequires
desktopsoftwarewithausernameandpassword,select
NATwithPPPoEmode.
•PPTP—PointtoPointTunnelingProtocol(PPTP)isusedto
connecttoaremoteserver.PPTPtypicallysupportsolder
MicrosoftWindows
implementationsthatrequire
tunnelingconnectivity.
•L2TP—Layer2TunnelingProtocol(L2TP)isusedtotransmit
Layer2dataoverIPorotherLayer3routednetworks.
InternetServiceProviders(ISPs)oftenuseittoenable
virtualprivatenetworks(VPNs)forcustomers overthe
Internet.Itdoesnotencryptnetworktrafficitself.
IfL2TPis
notavailableintheSetupWizard,youcanconfigureitlater
intheSonicOSmanagementinterface.
•WireMode(2PortWire)—Insertstheapplianceintothe
networkusingtwopairedinterfaces.AvailableWireMode
typesincludeBypass,Inspect,andSecure.Bypassmode
allowsforquickandnon
disruptiveinsertionintothedata
path.InspectmodeextendsBypassmodewithtraffic
inspectionforclassificationandflowreporting.Secure
modeprovidesfullSonicWallReAssemblyFreeDeep
PacketInspection™(RFDPI)andcontrolofnetworktraffic.
SecureModeaffordsthesamelevelofvisibi lityand
enforcementasconventionalNATorL2
BridgedMode
deployments,butwithoutanyL3/L4transformations,and
withnoalterationsofARPorroutingbehavior.IfWire
ModeisnotavailableintheSetupWizard,youcan
configureitlaterintheSonicOSmanagementinterface.
•TapMode(1PortTap)—Usingasingleinterface,the
firewallconnectstoand
receivesmirroredpacketsfroman
adjacentswitchSPANport.SimilartoInspectmodeinWire
Mode,butwithasingleportand notinthephysicalpathof
traffic.
NOTE:WhenoperatinginWireMode,thefirewall’s
MGMTinterfaceisusedforlocalmanagement.To
enableremotemanagementanddynamicsecurity
servicesandapplicationintelligenceupdates,aWAN
interface(separatefromtheWireModeinterfaces)
mustbeconfiguredforInternetconnectivity.

Related product manuals