<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Use Checkpoint SMB as Layer 2 Brdige to block traffic in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/203979#M10168</link>
    <description>&lt;P&gt;This option needs to be enabled (it's not by default):&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/24205i5C51773404614B29/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 23 Jan 2024 15:26:19 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-01-23T15:26:19Z</dc:date>
    <item>
      <title>Use Checkpoint SMB as Layer 2 Brdige to block traffic</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/203791#M10150</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is me again.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to deploy the SMB as a bridge to project my network as a first-tier layer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The design is like this:&lt;/P&gt;&lt;P&gt;SMB uses Wan port to update UTM, Lan 3 and 4 are layer 2 and the connection like this:&lt;/P&gt;&lt;P&gt;The UTM feature on Fortigate is disabled already.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="design.PNG" style="width: 673px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/24169iC89F8E9C73D068A8/image-size/large?v=v2&amp;amp;px=999" role="button" title="design.PNG" alt="design.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We find that:&lt;/P&gt;&lt;P&gt;IF both Lan 3 and 4 are under the same bridge, the UTM is NOT working.&lt;/P&gt;&lt;P&gt;IF both Lan 3 and 4 are under the same switch,&amp;nbsp;the UTM is NOT working.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;If we assign Lan 4 and 5 as one switch first, then assign the switch and Lan3 as the&amp;nbsp;same bridge,&amp;nbsp;the UTM is working now.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;I wonder: why the hell with this design make things work?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="design2.PNG" style="width: 930px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/24170i2651A47FB04CD064/image-size/large?v=v2&amp;amp;px=999" role="button" title="design2.PNG" alt="design2.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jan 2024 03:43:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/203791#M10150</guid>
      <dc:creator>MTS</dc:creator>
      <dc:date>2024-01-22T03:43:47Z</dc:date>
    </item>
    <item>
      <title>Re: Use Checkpoint SMB as Layer 2 Brdige to block traffic</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/203979#M10168</link>
      <description>&lt;P&gt;This option needs to be enabled (it's not by default):&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/24205i5C51773404614B29/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jan 2024 15:26:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/203979#M10168</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-01-23T15:26:19Z</dc:date>
    </item>
    <item>
      <title>Re: Use Checkpoint SMB as Layer 2 Brdige to block traffic</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/204409#M10189</link>
      <description>&lt;P&gt;So the Bridge mode will work with UTM after I enable this?&lt;/P&gt;&lt;P&gt;And that does not mean SSL inspection, right?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jan 2024 09:28:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/204409#M10189</guid>
      <dc:creator>MTS</dc:creator>
      <dc:date>2024-01-29T09:28:27Z</dc:date>
    </item>
    <item>
      <title>Re: Use Checkpoint SMB as Layer 2 Brdige to block traffic</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/205396#M10228</link>
      <description>&lt;P&gt;Any "UTM" features will require this feature to be enabled where two LAN interfaces are used.&lt;BR /&gt;SSL Inspection would have to be configured separately (if applicable).&lt;/P&gt;</description>
      <pubDate>Wed, 07 Feb 2024 23:50:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Use-Checkpoint-SMB-as-Layer-2-Brdige-to-block-traffic/m-p/205396#M10228</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-02-07T23:50:57Z</dc:date>
    </item>
  </channel>
</rss>

