Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
MTS
Participant

Use Checkpoint SMB as Layer 2 Brdige to block traffic

Hi all,

 

 

Is me again. 

I am trying to deploy the SMB as a bridge to project my network as a first-tier layer.

 

The design is like this:

SMB uses Wan port to update UTM, Lan 3 and 4 are layer 2 and the connection like this:

The UTM feature on Fortigate is disabled already.

design.PNG

 

 

We find that:

IF both Lan 3 and 4 are under the same bridge, the UTM is NOT working.

IF both Lan 3 and 4 are under the same switch, the UTM is NOT working.

 

If we assign Lan 4 and 5 as one switch first, then assign the switch and Lan3 as the same bridge, the UTM is working now.

I wonder: why the hell with this design make things work?

design2.PNG

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

This option needs to be enabled (it's not by default):

image.png

0 Kudos
MTS
Participant

So the Bridge mode will work with UTM after I enable this?

And that does not mean SSL inspection, right?

0 Kudos
PhoneBoy
Admin
Admin

Any "UTM" features will require this feature to be enabled where two LAN interfaces are used.
SSL Inspection would have to be configured separately (if applicable).

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events