You can configure a Transparent Bridge security chain after you prepare to deploy
Network Packet Broker.
| Where Can I Use This? | What Do I Need? |
- NGFW (Managed by PAN-OS or Panorama)
| |
A layer 1 Transparent Bridge security chain forwards traffic from one firewall
interface through a directly connected series of data inspection and processing
security devices and then back through a different firewall interface without the
need to route the traffic.
Before you configure a layer 1 Transparent Bridge security chain, take the steps to
Prepare to Deploy Network Packet Broker, including ensuring that the physical connections
between the firewall and the security chain devices are correct and that you allow
the firewall to forward decrypted content.
To distribute sessions across multiple Transparent Bridge security chains, create one
layer 1 Transparent Bridge security chain on the firewall for each of the security
chains you want to use to load balance traffic. Each Transparent Bridge security
chain on the firewall requires two dedicated layer 3 Ethernet interfaces. Check to
ensure that you have enough free Ethernet interfaces for the topology you want to
configure.
Layer 1 Transparent Bridge security chains cannot failover to another security
chain because they are not routed.