Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

Do Aliased (or Virtual) Interfaces Pose a Security Risk?

0
Posted

Do Aliased (or Virtual) Interfaces Pose a Security Risk?

0

Firewall-1 ignores virtual interfaces, so that inspection and anti-spoofing is performed on the physical interface. If you want to use virtual interfaces with anti-spoofing, you must define two network objects, one for each subnet, and then create a network group which consists of the two network objets. Then you can put the group in the physical interface’s anti-spoofing entry, just as you would if there were another physical network connected to the interface.

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.