Chapter 10 Interface

Better manageability - You can align network policies more appropriately for users. For example, you can create different content filtering rules for each VLAN (each department in the example above), and you can set different bandwidth limits for each VLAN. These rules are also independent of the physical network, so you can change the physical network without changing policies.

In this example, the new switch handles the following types of traffic:

Inside VLAN 2.

Between the router and VLAN 1.

Between the router and VLAN 2.

Between the router and VLAN 3.

10.4.2VLAN Interfaces Overview

In the ZyWALL, each VLAN is called a VLAN interface. As a router, the ZyWALL routes traffic between VLAN interfaces, but it does not route traffic within a VLAN interface. All traffic for each VLAN interface can go through only one Ethernet interface, though each Ethernet interface can have one or more VLAN interfaces.

"Each VLAN interface is created on top of only one Ethernet interface.

Otherwise, VLAN interfaces are similar to other interfaces in many ways. They have an IP address, subnet mask, and gateway used to make routing decisions. They restrict bandwidth and packet size. They can provide DHCP services, and they can verify the gateway is available.

10.4.3VLAN Summary Screen

This screen lists every VLAN interface and virtual interface created on top of VLAN interfaces. To access this screen, click Network > Interface > VLAN.

Figure 132 Network > Interface > VLAN

Each field is explained in the following table.

Table 52 Network > Interface > VLAN

LABEL

DESCRIPTION

#

This field is a sequential value, and it is not associated with any interface.

 

 

Name

This field displays the name of the interface.

 

 

198

 

ZyWALL USG 1000 User’s Guide