User Manual Part 1

Table Of Contents
Overview
Chapter 7: Using Bridges 217
Chapter 7
This chapter describes how to connect multiple network segments at the data-link layer,
using a bridge.
This chapter includes the following topics:
Overview..................................................................................................217
Workflow..................................................................................................223
Adding and Editing Bridges
.....................................................................22
4
Adding Internal Networks to Bridges.......................................................228
Adding Internet Connections to Bridges ..................................................233
Deleting Bridges
.......................................................................................23
8
Overview
The Safe@Office appliance enables you to connect multiple network segments at the data-
link layer, by configuring a bridge. Bridges offer the following advantages:
Easy network segmentation
Bridges can be used to compartmentalize an existing network into several security
zones, without changing the IP addressing scheme or the routers' configuration.
Ordinarily, if you need to deploy a firewall within an internal network, you can divide
the existing subnet into two networks and configure a new routing scheme. However,
in some deployments, the amount of network reconfiguration required prohibits such a
solution. Adding a bridge not only allows you to segment your network quickly and
easily, but it allows you to choose whether to enable the firewall between network
segments.
If you enable the firewall between bridged network segments, the gateway operates as
a regular firewall between network segments, inspecting traffic and dropping or
blocking unauthorized or unsafe traffic. In contrast, if you disable the firewall between
bridged network segments, all network interfaces assigned to the bridge are connected
Using Bridges