Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VLAN firewall best-practices / Mode bridge, gateway mode

Hello, 

we got 2 new XGS450-firewalls. Currently the configuration is blank.

The firewall should manage the vlan traffic.

We have 3 branches. They are connected with a cisco mpls-network. 

Our internet-firewall in the mpls network:

Should be the uplink-port to the mpls-cisco-router a wan port?

We don’t need nating to the mpls-network.

 

In the branches are thinclients and printers. This devices have to connect the server vlan behind the xgs4500.

So i think it isn’t a good idea to mark the uplink port as a wan port.

 

What is the best practices for this network design?

Thank you,
Thomas



This thread was automatically locked due to age.