Configure a Layer 3 LAN Interface
Table of Contents
Expand All
|
Collapse All
Prisma SD-WAN Docs
-
-
-
-
- AWS Transit Gateway
- Azure vWAN
- Azure vWAN with vION
- ChatBot for MS Teams
- ChatBot for Slack
- CloudBlades Integration with Prisma Access
- GCP NCC
- Service Now
- Zoom QSS
- Zscaler Internet Access
-
-
- ION 5.2
- ION 5.3
- ION 5.4
- ION 5.5
- ION 5.6
- ION 6.0
- ION 6.1
- ION 6.2
- ION 6.3
- ION 6.4
- New Features Guide
- On-Premises Controller
- Prisma Access CloudBlade Cloud Managed
- Prisma Access CloudBlade Panorama Managed
- Prisma SD-WAN CloudBlades
Configure a Layer 3 LAN Interface
Learn to configure a L3 LAN interface in Prisma SD-WAN. The LAN interface's enhanced L3
capabilities allow for simplified topologies and help facilitate an improved branch HA
model.
Where Can I Use This? | What Do I Need? |
---|---|
|
|
Prisma SD-WAN extends the capabilities of
the Layer 3 LAN interface to include traffic forwarding. Release 5.1.1
and later enables you to use Layer 3 LAN interfaces for services
such as DHCP Relay, DHCP Server, SNMP
source interface, and so on. The LAN interface's enhanced Layer
3 capabilities allow for simplified topologies and help facilitate an
improved branch HA model. Layer 3 LAN interface can be configured
with a static or dynamic IP address and is used to forward traffic to
and from the LAN. Layer 3 LAN Interface now supports static routing.
When Virtual Routing and Forwarding tables (VRF) is configured
on a sub-interface:
- Select LAN type interface for branch sites.
- Select Peer with the Network for data center sites.
- Select WorkflowsDevicesClaimed Devices, select the device you want to configure.On the Basic Info screen, toggle Yes for Enable L3 Direct Private WAN Forwarding.Click Save.Select the Interfaces tab.Select a port that connects to the LAN.For Admin Up, select Yes.(Optional) Enter a Description and add Tags.Select Port as the Interface type.For Use This Port For, select LAN.Toggle Scope as Global or Local.For VRF, select Globalor any other custom VRF that is available and associated in the VRF profile. VRF Global is enabled only when the associated device supports VRF.Select Enable IPv6 On This Interface to configure IPv6.For IPv6 Configuration, select AutoConf or Static.Autoconf indicates the Global IP address is derived using stateless address autoconfiguration (SLAAC).Choose Static if the IP address is fixed and is manually assigned. Additionally specify the IPv6 Address/Mask, Default Gateway (IPv6), and DNS server(s) (IPv6).In Advanced Options, you can specify, IPv6 Prefix Distribution, for address distribution.IPv6 is supported only for Global VRF.Select IPv4 Configuration as either DHCP or Static.
- If Static is selected, enter an IP address and mask for the interface.Default Gateway and DNS server configurations are not required for LAN interfaces. This is indicated by using LAN in the Use This Port For field.Select DHCP for dynamic allocation of IP address.If DHCP Relay functions are required, then click the DHCP Relay drop-down and select Yes for Enabled.For Server IPs, add server IP addresses as required.Save Port.