<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Use PA-500 ports as additional access ports (switch ports) in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20367#M14844</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can create a vlan group for this purpose and replace your current L3 interface with a vlan interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;On the desired interfaces set them to L2 type &lt;BR /&gt;under Networks-&amp;gt;interfaces-&amp;gt;Ethernet&lt;/LI&gt;&lt;LI&gt;Create a vlan "inside" and put all the L2 interfaces into that vlan &lt;BR /&gt;under Networks-&amp;gt;VLANS&lt;/LI&gt;&lt;LI&gt;Remove your L3 interface&lt;/LI&gt;&lt;LI&gt;Create a VLAN interface and place into the trust zone and your L3 ip address.&amp;nbsp; Add the new vlan to this interface &lt;BR /&gt;under Networks-&amp;gt;Interfaces-&amp;gt;VLANS&lt;/LI&gt;&lt;/UL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 20 Aug 2014 18:23:34 GMT</pubDate>
    <dc:creator>pulukas</dc:creator>
    <dc:date>2014-08-20T18:23:34Z</dc:date>
    <item>
      <title>Use PA-500 ports as additional access ports (switch ports)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20366#M14843</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I was hoping to get some direction.&amp;nbsp; I have deployed a PA500 in a small office using a standard L3 deployment (one trusted (LAN) and one untrusted (WAN) interface) and need a few switch-ports on the LAN side for access points.&amp;nbsp; Is it possible to add additional interfaces to the trusted zone and use them as switch ports in the same subnet and virtual router as my current L3 trusted interface?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I found the document in the KB explaining how to connect L2 and L3 networks but I don't think that is what I need to do.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I really don't want to put a cheap 8-port switch in front of my nice firewall &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 20 Aug 2014 17:35:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20366#M14843</guid>
      <dc:creator>adam_plaid</dc:creator>
      <dc:date>2014-08-20T17:35:57Z</dc:date>
    </item>
    <item>
      <title>Re: Use PA-500 ports as additional access ports (switch ports)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20367#M14844</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can create a vlan group for this purpose and replace your current L3 interface with a vlan interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;On the desired interfaces set them to L2 type &lt;BR /&gt;under Networks-&amp;gt;interfaces-&amp;gt;Ethernet&lt;/LI&gt;&lt;LI&gt;Create a vlan "inside" and put all the L2 interfaces into that vlan &lt;BR /&gt;under Networks-&amp;gt;VLANS&lt;/LI&gt;&lt;LI&gt;Remove your L3 interface&lt;/LI&gt;&lt;LI&gt;Create a VLAN interface and place into the trust zone and your L3 ip address.&amp;nbsp; Add the new vlan to this interface &lt;BR /&gt;under Networks-&amp;gt;Interfaces-&amp;gt;VLANS&lt;/LI&gt;&lt;/UL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 20 Aug 2014 18:23:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20367#M14844</guid>
      <dc:creator>pulukas</dc:creator>
      <dc:date>2014-08-20T18:23:34Z</dc:date>
    </item>
    <item>
      <title>Re: Use PA-500 ports as additional access ports (switch ports)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20368#M14845</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Adam,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here I have taken Example for&amp;nbsp; Ethernet1/9 as a port to be in VLAN1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Delete Configuration for L3 Ethernet Port.&lt;/P&gt;&lt;P&gt;2. Create L3 VLAN, as mentioned bellow.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="L3.png" class="image-0 jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/15063_L3.png" style="height: 320px; width: 620px;" /&gt;&lt;/P&gt;&lt;P&gt;2. Change Etherenet 1/9 into Layer 2 Port.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Change to L2 Port.png" class="image-1 jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/15064_Change to L2 Port.png" style="height: 323px; width: 620px;" /&gt;&lt;/P&gt;&lt;P&gt;3. Add Etherenet 1/9 into VLAN&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Add_Ports_L3.png" class="jive-image image-2" src="https://live.paloaltonetworks.com/legacyfs/online/15065_Add_Ports_L3.png" style="height: 323px; width: 620px;" /&gt;&lt;/P&gt;&lt;P&gt;Likewise you can add more ports to same VLAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hardik Shah&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Aug 2014 19:31:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/use-pa-500-ports-as-additional-access-ports-switch-ports/m-p/20368#M14845</guid>
      <dc:creator>hshah</dc:creator>
      <dc:date>2014-08-21T19:31:32Z</dc:date>
    </item>
  </channel>
</rss>

