Note

For information on how to create groups, objects, and rules on the firewall, see your Check Point documentation that was included with your Nokia IPSO software package.

Example of Transparent Mode

The following illustration shows a network connected to an Internet service provider (ISP) through a switch. In this configuration, all addressing to the local area network (LAN) is done at Layer 2.

ISP1.5.3.2/24

Internet

Switch

 

1.5.2.1/24

LAN

00293

Below, the network administrator wants to protect the LAN with a firewall. Installing a conventional firewall requires the network administrator to obtain another IP address from the ISP, IP 1.5.4.0/24.

ISP1.5.3.2/24

Internet

Switch

 

1.5.3.3/24

1.5.4.0/24

Switch

 

LAN

 

 

 

 

00294

Nokia’s transparent mode solution provides firewall protection for the LAN without having to obtain new IP addresses or reconfigure addresses on the LAN. Packet traffic continues to run at Layer 2, rather than at Layer 3 with a conventional firewall solution.

ISP 1.5.3.2/24

Internet

Switch

 

Nokia

Platform

with Firewall

1.5.3.3/24

 

1.5.3.4/24

Switch

 

 

LAN

 

 

 

 

 

 

 

 

00295

Nokia Network Voyager for IPSO 4.0 Reference Guide

135

Page 135
Image 135
Nokia IPSO 4.0 manual Example of Transparent Mode, Nokia Network Voyager for Ipso 4.0 Reference Guide 135