Jump to content

Recommended Posts

Posted

Hi all

 

Anyone have the Smoothwall appliane as a VM on VMware? Smoothwall have recommended installing in bridge mode, but I am getting tied up in knots for what port groups I need to use and whether I should use permiscuous mode.

 

Gateway is up on just a single basic interface, and can ping internal/external, but as soon I change it in to bridge mode, nada, kaput, can't do nowt!

 

Cheers

James

Posted
Mostly you will need to enable promiscous mode to get these to work however that is a security risk and as I assume the WAN connection would be external. Not generally recommended to run firewall on VM TBH although many do including myself at one stage but only in a home environment.
Posted

Thanks, to clarify, not running it as a firewall, just the web filter for BYOD and Guest devices. All managed devices will use cloud filter.

 

Would it be promiscuous mode on both port groups, or just the one the VM is actually in?

Posted
Running as a VM is definitely possible - we try to avoid complext network configurations like bridges on VM installs but otherwise they are fine. Only caveat is the disk subsystem. Smoothwall logs a lot and if the disk subsystem is shared by many VMs the disk IO may cause issues.
Posted
Running as a VM is definitely possible - we try to avoid complext network configurations like bridges on VM installs but otherwise they are fine. Only caveat is the disk subsystem. Smoothwall logs a lot and if the disk subsystem is shared by many VMs the disk IO may cause issues.

 

Oh, well the bridged VM suggestion came from Smoothwall. How else would we do this on a VM?

Posted
We try to avoid - not rule it out by default. An alternative to a bridge is using a single NIC smoothwall as gateway, the Smoothwall will intercept web traffic and forward all other traffic to the 'real' gateway. Policy based routing can be used as well.
Posted
We try to avoid - not rule it out by default. An alternative to a bridge is using a single NIC smoothwall as gateway, the Smoothwall will intercept web traffic and forward all other traffic to the 'real' gateway. Policy based routing can be used as well.

 

Just spoken to some of your colleagues and looks like we are going to go with setting the Smoothwall as the DG in our DHCP scopes.

  • 4 weeks later...

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...