TMS zl Management and Configuration Guide ST.1.1.100226

1-7
Overview
Operating Modes
Operating Modes
The TMS zl Module supports two operating modes:
Routing mode
Monitor mode
Routing Mode
In routing mode, the TMS zl Module routes all traffic that needs to be secured.
As it routes the traffic, it applies the security features that you have config-
ured—IPS policies, firewall attack checks, firewall access policies, NAT poli-
cies, and VPN policies (IPsec and L2TP policies). When all policies have been
applied—and if the module has not determined that the traffic poses a threat
and must be dropped—the module routes the traffic to its destination, for-
warding it to the host switch on the correct destination VLAN.
Table 1-2. Routing Mode
Unlike an appliance-based firewall/IPS, the TMS zl Module does not have any
physical ports to which end nodes or network routers can connect. The HP
host switch provides the physical ports for the end nodes and routers, and it
bridges traffic to the TMS zl Module’s internal ports.
Supported Capabilities Filtered Traffic
IDS/IPS
•Firewall
•NAT
•VPN
•Routing
•HA
Traffic routed between TMS VLANs