04-09-2009 02:40 AM
I'm new to ISG-Firewalls and need some help now. We have the ISG2000 with follwing Interfaces configured: 1/2 (zone LAN) and 2/1 (zone company-x). The network of company-x ist seperated into 4 VLAN's which should come over with a trunk. we have to set up each VLAN with an own policy for the access to our LAN-zone.
is that possible in some way? how can i build a trunk through the ISG on that interface and how can I set up each vlan which terminates on one single interface with own policies? means, how can i created more detailed policies, not only from zone to zone, we need access with different policies for each VLAN in another zone.
any help appreciated!
Solved! Go to Solution.
04-09-2009 03:10 AM
04-09-2009 03:32 AM - edited 04-09-2009 03:35 AM
Thanks for your answer!
That means I've to create four subinterfaces on the company-x zone on my ISG. First of all I need to check if the firewall on the other side (which is not under my control) is able to tag the vlans.
When creating policies, I only see options to configure "from zone X to zone Y", but how can I configure the single VLAN's at this point and give them their own policy? Can I choose the subinterface under "Adressbook entry" then?
04-09-2009 03:52 AM