Network > Interfaces
194
SonicOS 5.8.1 Administrator Guide
Simple Transparent Mode Topology
ARP in L2 Bridge Mode
L2 Bridge Mode employs a learning bridge design where it will dynamically determine which
hosts are on which interface of an L2 Bridge (referred to as a Bridge-Pair). ARP is passed
through natively, meaning that a host communicating across an L2 Bridge will see the actual
host MAC addresses of their peers. For example, the Workstation communicating with the
Router (192.168.0.1) will see the router as 00:99:10:10:10:10, and the Router will see the
Workstation (192.168.0.100) as 00:AA:BB:CC:DD:EE.
This behavior allows for a SonicWALL operating in L2 Bridge Mode to be introduced into an
existing network with no disruption to most network communications other than that caused by
the momentary discontinuity of the physical insertion.
Please note that stream-based TCP protocols communications (for example, an FTP session
between a client and a server) will need to be re-established upon the insertion of an L2 Bridge
Mode SonicWALL. This is by design so as to maintain the security afforded by stateful packet
inspection (SPI); since the SPI engine can not have knowledge of the TCP connections which
pre-existed it, it will drop these established packets with a log event such as TCP packet
received on non-existent/closed connection; TCP packet dropped.
WorkStation
IP=192.168.0.200/24
GW=192.168.0.1
MAC=00:11:22:33:44:55
Server
IP=192.168.0.200/24
GW=192.168.0.1
MAC=00:AA:BB:CC:DD:EE
LAN 192.168.0.x/24
Router
Switch
X0 (LAN)
IP= Transparent Mode
(Range 192.168.0.100 to 192.168.0.250)
MAC=00:06:B1:10:10:10
Internet
X1 (WAN)
IP= 192.168.0.12/24
MAC= 00:06:B1:10:10:11
GW= 192.168.0.1
E0 (Internal)
IP= 192.168.0.1/24
MAC= 00:99:10:10:10:10
S0 (External)= ISP Assigned
Note: Hosts on this
segment resolve
192.168.0.1 to
00:06:B1:10:10:10:10
Note: The Router
resolves all IPs
192.168.0.100-192.168.0.250
to 00:06:B1:10:10:11
SonicWALL Firewall Transparent Mode
link/spd
pc card lanwan opt 1 2 3 4
5 6
signal
link/act
activity
NSA 240