TMS zl Management and Configuration Guide ST.1.1.100430
1-20
Overview
Deployment Options for Routing Mode—Threat Protection
Figure 1-7. External Router as Default Gateway
– If an external router is the default gateway, this VLAN is the
TMS VLAN on which the host switch connects to the external
router.
If this VLAN does not already exist on the host switch, extend the
VLAN to the switch.
b. On the TMS zl Module, associate this VLAN with a zone (External is
recommended). Assign the module an IP address on the TMS VLAN—
often the address that you removed from the host switch on that
VLAN.
However, if the host switch is the default gateway, assign the TMS zl
Module a different IP address. In this case, you must also allow the
switch to have an IP address on the TMS VLAN when you associate
the VLAN with the zone.
c. On the TMS zl Module, specify the IP address of the default gateway.
This address should be on the TMS VLAN that you just added.
d. On the default gateway device, verify that a route or routes to the
other TMS VLANs exist. The routes’ gateway (next hop router) should
be the TMS zl Module’s IP address on the TMS VLAN that you just
added.
For more detailed instructions on this step, see “Boot the TMS zl Module
to the Product OS” in Chapter 2: “Initial Setup in Routing Mode.”
If you prefer, you can now access the TMS zl Module’s Web browser interface
to complete the remaining tasks. At this point, you should access this interface
from an endpoint in the same TMS VLAN that you added to the module in step