HP VPN Firewall Appliances Network Management Configuration Guide

258
Local proxy ARP
As shown in Figure 172, Host A and Host B belong to VLAN 2, but are isolated at Layer 2. Host A
connects to GigabitEthernet 0/3 while Host B connects to GigabitEthernet 0/1. Enable local proxy ARP
on Firewall to allow Layer 3 communication between the two hosts.
Figure 172 Application environment of local proxy ARP
Enable local proxy ARP when hosts connecting to different isolated Layer 2 ports in the same VLAN need
to communicate at Layer 3.
Enabling common proxy ARP
You can enable common proxy ARP in VLAN interface view/Layer 3 Ethernet interface view/Layer 3
Ethernet subinterface view/Layer 3 aggregate interface view/Layer 3 aggregate subinterface view.
To enable common proxy ARP:
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter interface view.
interface interface-type interface-number N/A
3. Enable proxy ARP.
proxy-arp enable Disabled by default.
Enabling local proxy ARP
You can enable local proxy ARP in VLAN interface view/Layer 3 Ethernet interface view/Layer 3
Ethernet subinterface view/Layer 3 aggregate interface view/Layer 3 aggregate subinterface view.
To enable local proxy ARP:
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter interface view.
interface interface-type interface-number N/A
GE0/2
VLAN 2
Vlan-int2
192.168.10.100/16
Switch
GE0/3
GE0/1
GE0/2
uplink-port
Host A
192.168.10.99/16
Host B
192.168.10.200/16
VLAN 2
port-isolate group 2
Firewall