SonicWALL 3 Benutzerhandbuch

Seite von 348
96
S
ONIC
WALL S
ONIC
OS S
TANDARD
 3.0 A
DMINISTRATOR
S
 G
UIDE
C
HAPTER
 14: Configuring Address Resolution Protocol Settings
Navigate to the Network > Routing page, and add a static route for the 192.168.50.0/24 network as 
follows:
The entry will appear in the table as follows:
To allow the traffic to reach the 192.168.50.0/24 subnet, and to allow the 192.168.50.0/24 subnet to 
reach the hosts on the LAN, navigate to the Firewall > Access Rules page, and add the following 
Access Rule:
Prohibit Dynamic ARP Entries
SonicOS Standard provides the ability to prohibit dynamic ARP entries on a per-interface basis. 
Enabling this feature on an interface will prevent that interface from dynamically adding ARP entries. 
This is offered as a security mechanism to statically and strictly define the MAC addresses of hosts 
that will be permitted to operate on a particular interface.
S
Alert: Misuse or misconfiguration of this feature can render the SonicWALL inaccessible and 
recoverable only by restoring factory defaults. Be certain to understand the behavior of this feature, 
and to have properly configured static ARP entries for allowed hosts prior to applying any 'prohibit 
dynamic ARP entry' settings. 
A typical use for this feature would be prohibiting dynamic ARP on the WAN interface, after adding a 
static ARP entry for the upstream router. This will help to ensure that the router will be the only host 
allowed on the WAN interface.