Nokia Network Voyager for IPSO 4.0 Reference Guide 135NoteFor information on how to create groups, objects, and rules on the firewall, see your CheckPoint documentation that was included with your Nokia IPSO software package.Example of Transparent ModeThe following illustration shows a network connected to an Internet service provider (ISP)through a switch. In this configuration, all addressing to the local area network (LAN) is done atLayer 2.Below, the network administrator wants to protect the LAN with a firewall. Installing aconventional firewall requires the network administrator to obtain another IP address from theISP, IP 1.5.4.0/24.Nokia’s transparent mode solution provides firewall protection for the LAN without having toobtain new IP addresses or reconfigure addresses on the LAN. Packet traffic continues to run atLayer 2, rather than at Layer 3 with a conventional firewall solution.LANInternetISPSwitch1.5.2.1/24002931.5.3.2/24LANInternetISPSwitchSwitch1.5.3.2/241.5.3.3/241.5.4.0/2400294LANInternetISPSwitchSwitch1.5.3.2/241.5.3.3/241.5.3.4/2400295NokiaPlatformwith Firewall