One Arm Mode is when only one firewall interface is used, and all traffic comes into and out from the same interface. It is possible to apply security rules and Deep Packet Inspection (DPI) scans on data traffic from the One Arm interface. Data received from this interface is scanned by SonicOS security services and then sent out on this interface.
This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.
To configure an interface for One Arm Mode:
Click on the Edit icon for the desired interface. The Edit Interface dialog displays

For Zone, select LAN or WAN. One Arm Mode is only supported for these zones.
The dialog displays more fields


DHCP One Arm Mode is not always offered, but it may be available with either the LAN or WAN zone.

The interface IP Address and the One Arm Peer address can be in the same subnet, but this is not required. A Route Policy is automatically created.
Fill in the other fields in the Edit Interface dialog.
Depending on the zone and whether Static One Arm Mode or DHCP One Arm Mode is selected, other fields will differ. In general, the other fields displayed with Static One Arm Mode selected will match those displayed with a Mode/IP Assignment of Static. And the other fields shown with DHCP One Arm Mode selected will match those shown with a Mode/IP Assignment of DHCP.