A Proxy Arp Example - D-Link DFL-260E User Manual

Network security firewall netdefendos version 2.40.00
Hide thumbs Also See for DFL-260E:
Table of Contents

Advertisement

4.2.6. Proxy ARP
and ARP proxy publishing.
Route #
1
2
In this way there is complete separation of the sub-networks but the hosts are unaware of this. The
routes are a pair which are a mirror image of each other but there is no requirement that proxy ARP
is used in a pairing like this.
Keep in mind that if the host has an ARP request for an IP address outside of the local network then
this will be sent to the gateway configured for that host. The entire example is illustrated below.
Transparent Mode as an Alternative
Transparent Mode is an alternative and preferred way of splitting Ethernet networks. Setup is
simpler than using proxy ARP since only the appropriate switch routes need to be defined. Using
switch routes is fully explained in Section 4.7, "Transparent Mode".
Proxy ARP depends on static routing where the location of networks on interfaces are known and
usually fixed. Transparent mode is more suited to networks whose interface location can change.
Proxy ARP and High Availability Clusters
In HA clusters, switch routes cannot be used and transparent mode is therefore not an option.
However, proxy ARP does function with HA and is consequently the only way to implement
transparent mode functionality with a cluster.
Automatically Added Routes
Proxy ARP cannot be enabled for automatically added routes. For example, the routes that
Network
net_1
net_2
Figure 4.4. A Proxy ARP Example
Not all interfaces can make use of Proxy ARP
It is only possible to have Proxy ARP functioning for Ethernet and VLAN interfaces.
Proxy ARP is not relevant for other types of NetDefendOS interfaces since ARP is not
involved.
Interface
if1
if2
181
Chapter 4. Routing
Proxy ARP Published
if2
if1

Advertisement

Table of Contents
loading

This manual is also suitable for:

Dfl-860eDfl-1660Dfl-2560Dfl-2560g

Table of Contents