global-mode (Protocols)
Syntax
global-mode (switching | transparent-bridge) ;
Hierarchy Level
[edit protocols l2-learning]
Description
Specify the global mode for the SRX Series Firewall as Layer 2 transparent bridge mode or switching mode. After changing the mode, you must reboot the device for the configuration to take effect.
Default
On SRX1500, the default Layer 2 global mode is transparent-bridge mode.
Starting with Junos OS Release 15.1X49-D100, on SRX300, SRX320, SRX340, SRX345, SRX550, SRX550M, SRX1500, SRX4100, and SRX4200 devices, the default Layer 2 global mode configuration is changed from transparent-bridge to switching mode.
You
must explicitly configure Layer 2 transparent-bridge mode for the SRX300,
SRX320, SRX340, SRX345, SRX550, SRX550M, SRX1500, SRX1600, SRX2300, SRX4100,
SRX4200, SRX4300, SRX5400, SRX5600, and SRX5800 devices that work in transparent
mode. Use the command set protocols l2-learning global-mode
transparent-bridge before rebooting the devices with Junos OS
15.1X49-D100 image.
Options
-
transparent-bridge mode—Layer 2 transparent mode provides the ability to deploy the firewall without making changes to the existing routing infrastructure. A device operates in transparent mode when there are interfaces defined as Layer 2 interfaces. The traffic is forwarded without modification of Layer-3 headers, allowing deployment without changes to the existing IP addressing or routing infrastructure. For SRX Series Firewalls, transparent mode provides full security services for Layer 2 switching capabilities. -
switching mode—The switching mode configures the device to operate in Ethernet switching mode, enabling Layer-2 forwarding based on MAC learning and VLAN switching. This mode is used when interfaces are configured for Ethernet switching.
Required Privilege Level
routing—To view this statement in the configuration.
routing-control—To add this statement to the configuration.
Release Information
Statement introduced in Junos OS Release 15.1X49-D40.