Managing network interfaces

Depending on the model of the Kaspersky NGFW hardware platform, a certain set of interfaces is preconfigured on the device. Interface names in the system follow the format port<port name> pattern, for example, port1, port2, port3. Port numbering starts with port1 regardless of the hardware platform model and corresponds to the physical network ports on the chassis of the device. The name of the management port is mgmt.

You can add interfaces to security zones, and then use security zones as qualifiers in security rules and decryption rules.

You can view the table of network interfaces in a device template or on a Kaspersky NGFW device:

The table displays the following L2 and L3 interfaces:

The Update received field displays the time when the list of interfaces and their data was obtained. To update the list of interfaces, click kebab menu → Refresh.

To view interface statistics, select the check boxes next to the interfaces that you need and click kebab menu → View status.

Information about network interfaces is displayed in the following columns of the table:

You can also configure and view interfaces on the command line using the interface family of commands. For a description of command families and a link to the complete list of Kaspersky NGFW configuration commands, see the Managing Kaspersky NGFW using the command line document.

In this section

Creating network interfaces

Enabling or disabling a network interface

Editing a network interface

Deleting a network interface

Managing the roles of physical interfaces

Adding interfaces to security zones

Configuring aggregated Interfaces

Configuring subinterfaces

Traffic processing by L2 interfaces

Managing L2 bridges

ARP and GARP support

DHCP Relay and Option 82 support

Page top