Palo Alto Firewall | Layer 2 Interface With Subinterfaces VLAN Configuration

preview_player
Показать описание


When your organization wants to divide a LAN into separate virtual LANs (VLANs) to keep traffic and policies for different departments separate, you can logically group Layer 2 hosts into VLANs and thus divide a Layer 2 network segment into broadcast domains. For example, you can create VLANs for the Finance and Engineering departments. To do so, Configure a Layer 2 Interface, Subinterface, and VLAN.

The firewall acts as a switch to forward a frame with an Ethernet header containing a VLAN ID, and the destination interface must have a subinterface with that VLAN ID in order to receive that frame and forward it to the host. You configure a Layer 2 interface on the firewall and configure one or more logical subinterfaces for the interface, each with a VLAN tag (ID).
Рекомендации по теме
Комментарии
Автор

Nice video. The only thing I would suggest when teaching students/viewers is to show them the "switchport trunk encapsulation dot1q" command first prior to changing the port over to "mode trunk". This is why your "show int trunk" command had no output. Good job though.

slavis
Автор

Hi, help pleas. How to configure topology using L3 switch and then few L2 switches ? I want to use PaloAlto > L3 switch > L2 switches with different vlans

dv
Автор

nice video, can you ping in to the R4 docker 5 or docker 7 because they are same vlan, is it reachable to ping the different zone

ihsanfavy
Автор

How can you define DGW for vlan100 on that Firewall?

huseyinyakupoglu
Автор

how many sub-interface can be made on a single interface of palo alto firewall ?

nikhilkarale
Автор

Please, how to install paloalto on eve-ng?

mauriciolealdesouza
Автор

How did you install Firefox on Docker?
How did you add Static IP on the Docker?

willo
Автор

can you tell me which simulation tool you are using and how to access it.

techprodon
Автор

Nice Work, 👏 what are you using is that a GN3 ?

Janik