This chapter describes how to connect multiple network segments at the data-link layer, using a bridge.
This chapter includes the following topics:
Overview .................................................................................................. 157
Workflow.................................................................................................. 162
Deleting Bridges ....................................................................................... 172
Overview
The IP60 appliance enables you to connect multiple network segments at the data-link layer, by configuring
a bridge. Bridges offer the following advantages:
Easy network segmentation
Bridges can be used to compartmentalize an existing network into several security zones, without
changing the IP addressing scheme or the routers' configuration.
Ordinarily, if you need to deploy a firewall within an internal network, you can divide the existing
subnet into two networks and configure a new routing scheme. However, in some deployments, the
amount of network reconfiguration required prohibits such a solution. Adding a bridge not only allows
you to segment your network quickly and easily, but it allows you to choose whether to enable the
firewall between network segments.
Chapter 7: Using Bridges
Chapter 7
Using Bridges
Overview
157