AIOps for NGFW Premium license (use the Strata Cloud Manager app)
Configure a Layer 3 interface for your firewalls as part of the folder or snippet
configuration, or for a specific firewall.
Log in to
Strata Cloud Manager
.
Select
Manage
Configuration
NGFW and Prisma Access
Device Settings
Interfaces
Ethernet
and select the Configuration Scope where you want to create the
Layer 3 interface.
Select a firewall from your
Folders
or select
Snippets
to configure the Layer 3 interface in a
snippet.
If you select a folder or select a snippet, you create a Layer 3 interface
variable that must be assigned at the device level.
Add the interface.
If you’re configuring a Layer 3 interface for a specific firewall, select
the interface you want to configure instead.
Folders and Snippets
—
Add Interface
and
select
Interface
.
Firewalls
—
Add
and
Add
Interface
.
Configure the interface.
If you’re configuring an interface in the folder or snippet scope, the interface configuration is
pushed only to firewalls that have the corresponding interface slot
available. For example, if you configure Ethernet 1/5 in the folder scope
and the firewall associated with the folder has only four interface slots,
then the configuration isn’t pushed to the firewall.
Select the interface
Slot
.
Select the
Interface Name
.
When you configure an interface for a specific firewall, the
Interface
Name
is fixed, such as
ethernet1/1
if you select Slot
1. The fixed interface names are dependent on the slot that you
selected in the previous step.
If
you're configuring a Layer 3 Ethernet interface for the SD-WAN functionality, you can configure up
to four IP addresses. Whereas the Auto VPN workflows uses only the
first IP address from the configured
Enable to activate the interface for Point-to-Point Protocol over Ethernet (PPPoE) termination.
This makes the interface a PPPoE termination point to support
connectivity in a Digital Subscriber Line (DSL) environment where
there’s a DSL modem but no other PPPoE device to terminate the
connection.
(
Optional
) Configure the interface link settings.
Expand the
Advanced Settings
.
Select the interface
Link Speed
.
Auto
is selected by default and allows the firewall to determine the
speed.
Select the interface
Link Duplex
transmission
mode.
Auto
is selected by default to allow
the firewall to negotiate the transmission mode automatically.
Select the interface
Link State
.
Auto detect
is selected by default to allow the firewall to determine the
link state.
Assign the interfaces to the aggregate interface group.