2.7.1. Transparent mode

In transparent mode, PSM acts as a transparent router connecting the network segment of the administrators to the segment of the protected servers at the network layer (Layer 3 in the OSI model). All connections must pass through PSM to reach the servers — PSM is a proxy gateway, completely separating the protected servers from the rest of the network. Controlled connections and traffic are inspected on the application level, while other types of connections are simply forwarded on the packet level.

PSM can also be configured to act as a single-interface transparent router. For details, see Section 2.7.2, Single-interface transparent mode.


Transparent mode does not support multicast traffic.

Figure 2.8. PSM in transparent mode

