Does bridge mode monitor or control traffic?

Comments

10 comments

  • Avatar
    Firewalla

    It can do both monitoring and control. More on this here https://help.firewalla.com/hc/en-us/articles/1500012304202-Firewalla-Transparent-Bridge-Mode

     

    0
    Comment actions Permalink
  • Avatar
    jsmith

    Thank you much. Also, does bandwidth tend to take much of a hit when doing it this way? Cheers.

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    Not really, routing / bridging performance is the same. 

    0
    Comment actions Permalink
  • Avatar
    jsmith

    Thanks! Ok final question, if I may. Can this be done with two lans? I see the FWA Gold has 4 ports (maybe lan 1 in, lan 1 out, lan 2 in, lan 2 out)? Cheers.

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    You can use VLAN's with the bridges, but NOT two LAN's with different network on them. 

    0
    Comment actions Permalink
  • Avatar
    jsmith

    Thank you :)

    0
    Comment actions Permalink
  • Avatar
    Brad Salt

    Piggybacking on this... do the firewall rules still apply when it comes to ingress traffic or is it passing all traffic from the edge router/FW? Specifically, using port forwarding as an example, which is setup on the external router/FW. Do I also need to setup forwarding on FWG to allow this traffic or is it passed? Also wondering if  GEOIP blocking still works. 

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    Anything that's going through the bridge can be controlled and monitored. See this article for details https://help.firewalla.com/hc/en-us/articles/1500012304202-Firewalla-Transparent-Bridge-Mode

     

    0
    Comment actions Permalink
  • Avatar
    Brad Salt

    I have read that doc and it answers the second question about GEOIP since it is egress traffic. However, it doesn't answer the first with regard to port forwarding. I think the answer is that I do not need to setup forwarding on Firewalla since the forwarding on the edge router/fw will be NAT'd to the internal address which will be passed by the Firewalla bridge. Do I have this correct, or do I still need to setup the port forwarding in Firewalla also?   

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    When firewalla is a bridge, it doesn't understand port forwarding ... everything is pretty transparent (well, you may need port forward to it when use VPN Server)

    0
    Comment actions Permalink

Please sign in to leave a comment.