Set up security for mirrored traffic
Protect your mirrored traffic.
Because your packet analyzer can be a back door to sensitive information about your network (impacting your Airwall secure network invisibility), you need to set up security policies to limit access to your packet analyzer and mirrored traffic so that only trusted devices can access it.
CAUTION: It is a best practice to keep all of the
information being sent to your packet analyzer within the Airwall secure network. Since you are essentially making a copy of potentially-sensitive overlay traffic and
decrypting it for the packet analyzer, there is a risk of exposure if your packet
analyzer is compromised, not secured, or if the network information you are capturing is
sent over an unsecured network. You can secure the packet analyzer management interface
within the Airwall secure network, with access to the interface limited to authorized personnel.