
Feature Overview
2
Configuring PortShield Interfaces
SonicOS Enhanced 3.1 Release
What is SonicWALL PortShield Architecture
The SonicWALL PortShield feature enables you to configure some or all of the 24 LAN switch ports on
the SonicWALL PRO 1260 into separate contexts or PortShield interfaces, providing protection from
traffic on the WAN and DMZ, and devices inside your network. Each context has its own wire-speed
switch ports that have protection of a dedicated, deep packet inspection firewall.
You can assign any combination of ports on the SonicWALL PRO 1260 into a PortShield interface. By
default, all 25 ports are part of the primary LAN interface. All ports you do not assign to a PortShield
interface remain assigned to the LAN interface. For example, if you assign ports 4 through 12 to a
PortShield interface, ports 1 through 3, ports 13 through 24, and the Uplink port all remain assigned to
the LAN interface.
You can create standard SonicWALL address objects and assign them to a PortShield interface,
harnessing the convenience of using single objects to apply ranges or groups of non-consecutive
addresses to a PortShield interface. For ranges and hosts, you conveniently can create the address object
inside the PortShield interface creation environment.
You cannot assign Port 1 and the Uplink Port to a PortShield interface. They can only be part of a LAN
interface. The following figure shows a basic view of what three PortShield interfaces on one device
might look like.
PortShield
Interface 1
PortShield
Interface 2
PortShield
Interface 3
Ports 3, 4,
5, 6
Ports 9, 10 Ports 15, 16, 17
SonicWALL PRO 1260
Komentarze do niniejszej Instrukcji