November 2017
Intermediate to advanced
494 pages
14h 29m
English
This network setup is almost the same as the previous network with the added benefit of a fully multi-tenant virtual platform. In a physical firewall, we can only add a very small number of NICs to provide internet connectivity to isolated subnets. Using a virtualized firewall, we can add as many firewalls or vNICs as we want. This setup is especially useful when multiple, isolated client subnets need to be hosted and each subnet requires its own firewall control for filtering purposes. In this example, vmbr0 is directly served by the physical firewall. The bridges vmbr1 and vmbr200 have their own virtualized firewalls. The firewalls also act as bridges between bridges. For example, the firewall for ...