Chapter 9: Inline Quarantine Method - Extreme Networks AG200 User Manual

Version 5.0
Table of Contents

Advertisement

9
Inline Quarantine Method
Inline is the most basic Sentriant AG installation. When deploying Sentriant AG inline, Sentriant AG
monitors and enforces all endpoint traffic.
When Sentriant AG is installed in a single-server installation, Sentriant AG becomes a Layer 2 bridge
that requires no changes to the network configuration settings. When Sentriant AG is installed in a
multiple-server installation, you may have to configure the switch that connects the Sentriant AG ESs to
use Spanning Tree Protocol (STP) if STP is not already configured.
Sentriant AG allows endpoints to access the network or blocks endpoints from accessing the network
based on their Internet Protocol (IP) address with a built-in firewall (iptables).
See the Sentriant AG Installation Guide for more information on installing Sentriant AG in inline mode.
When Sentriant AG is installed inline in a multiple-server configuration
(Figure
114), the multiple ES
form a network loop (an undesired condition). The Spanning Tree Protocol (STP) detects the loop and
closes one of the offending ports on the switch based on the switch configuration. If an ES becomes
unavailable, the switch reconnects so that there is always a path from the VPN to an ES. All of the ES
firewalls continuously stay in sync with each other.
221
Sentriant AG Users' Guide, Version 5.0

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sentriant ag

Table of Contents