DefensePro User Guide
Getting Started
Document ID: RDWR-DP-V0602_UG1201
45
Configuring Port Pairs
You can configure ports on a DefensePro device to receive, inspect, and transmit traffic. The traffic
from the receiving port is always sent out of the device from its corresponding transmitting port. The
ports are paired; one port receives traffic while another transmits traffic.
You can set the operation mode of a port pair. When the port pair operates in Process mode, the
traffic is inspected for attacks and traffic sampling policies are applied. When the port pair operates
in Forward mode, the traffic is forwarded to the destination port without any inspection.
To configure a pair of ports
1. In the Configuration perspective Networking tab navigation pane, select Port Pairs.
2. Do one of the following:
—
To add a pair of ports, click the
(Add) button.
—
To edit a pair of ports, double-click the row.
3. Configure the parameters; and then, click OK.
Table 1: Port Pair Parameters
Parameter
Description
Port Pairs
Source Port
T
he user-defined source port for received traffic.
Destination Port
T
he user-defined destination port for transmitted traffic.
Operation
The operation mode assigned to a pair of ports.
Values:
•
Forward—The traffic is forwarded without any inspection.
•
Process—The traffic passes thought the CPU and is inspected for attacks,
bandwidth, and so on.
Failure Mode
Specifies whether the traffic passes through (bypasses) a pair of RJ-45 ports
when the platform is rebooting or is powered down (for example, if the device
fails).
Values:
•
Fail-Close—Traffic does not pass through when the platform is powered
down. When a pair of ports enters fail-close state, traffic is blocked and
the link appears to be down (no power), and switches that are connected
to the DefensePro device detect the link as being down.
•
Fail-Open—Traffic passes through (not processed by DefensePro) when
the platform is powered down.
Note:
For more information, see
Internal Bypass for RJ-45 Ports, page 46
In Port
Specifies which port in the pair is designated as the inbound port—the source
or destination port. This setting is used in real-time reports for inbound and
outbound traffic.
Summary of Contents for DefensePro 6.02
Page 1: ...DefensePro User Guide Software Version 6 02 Document ID RDWR DP V0602_UG1201 January 2012 ...
Page 2: ...DefensePro User Guide 2 Document ID RDWR DP V0602_UG1201 ...
Page 20: ...DefensePro User Guide 20 Document ID RDWR DP V0602_UG1201 ...
Page 28: ...DefensePro User Guide Table of Contents 28 Document ID RDWR DP V0602_UG1201 ...
Page 116: ...DefensePro User Guide Device Network Configuration 116 Document ID RDWR DP V0602_UG1201 ...
Page 302: ...DefensePro User Guide Real Time Security Reporting 302 Document ID RDWR DP V0602_UG1201 ...
Page 308: ...DefensePro User Guide Administering DefensePro 308 Document ID RDWR DP V0602_UG1201 ...
Page 324: ...DefensePro User Guide Troubleshooting 324 Document ID RDWR DP V0602_UG1201 ...