Brocade Communications Systems ServerIron ADX 12.4.00 Service Manual Page 112

  • Download
  • Add to my manuals
  • Print
  • Page
    / 188
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 111
ServerIron ADX Firewall Load Balancing Guide 101
53-1002436-01
Configuration examples with Layer 3 routing
4
DRAFT: BROCADE CONFIDENTIAL
Commands on zone 3’s ServerIron ADX (Zone3-SI-A)
The following commands configure the ServerIron ADX in zone 3.
ServerIronADX> enable
ServerIronADX# configure terminal
ServerIronADX(config)# hostname Zone3-SI-A
Zone3-SI-A(config)# vlan 1
Zone3-SI-A(config-vlan-1)# always-active
Zone3-SI-A(config-vlan-1)# no spanning-tree
Zone3-SI-A(config-vlan-1)# router-interface ve 1
Zone3-SI-A(config-vlan-1)# exit
Zone3-SI-A(config)# interface ve 1
Zone3-SI-A(config-ve-1)# ip address 10.10.3.111 255.255.255.0
Zone3-SI-A(config-ve-1)# exit
Zone3-SI-A(config)# ip route 0.0.0.0 0.0.0.0 10.10.3.1
Zone3-SI-A(config)# no ip icmp redirects
Zone3-SI-A(config)# server fw-name fw1 10.10.3.1
Zone3-SI-A(config-rs-fw1)# port http
Zone3-SI-A(config-rs-fw1)# port http no-health-check
Zone3-SI-A(config-rs-fw1)# port ftp
Zone3-SI-A(config-rs-fw1)# port ftp no-health-check
Zone3-SI-A(config-rs-fw1)# port snmp
Zone3-SI-A(config-rs-fw1)# port snmp no-health-check
Zone3-SI-A(config-rs-fw1)# exit
Zone3-SI-A(config)# server fw-name fw2 10.10.3.2
Zone3-SI-A(config-rs-fw2)# port http
Zone3-SI-A(config-rs-fw2)# port http no-health-check
Zone3-SI-A(config-rs-fw2)# port ftp
Zone3-SI-A(config-rs-fw2)# port ftp no-health-check
Zone3-SI-A(config-rs-fw2)# port snmp
Zone3-SI-A(config-rs-fw2)# port snmp no-health-check
Zone3-SI-A(config-rs-fw2)# exit
Zone3-SI-A(config)# server fw-group 2
Zone3-SI-A(config-fw-2)# fw-name fw1
Zone3-SI-A(config-fw-2)# fw-name fw2
Zone3-SI-A(config-fw-2)# fwall-info 1 4/1 10.10.1.111 10.10.3.1
Zone3-SI-A(config-fw-2)# fwall-info 2 4/2 10.10.1.111 10.10.3.2
Zone3-SI-A(config-fw-2)# fwall-info 3 4/1 10.10.1.112 10.10.3.1
Zone3-SI-A(config-fw-2)# fwall-info 4 4/2 10.10.1.112 10.10.3.2
Zone3-SI-A(config-fw-2)# fwall-info 5 4/1 10.10.2.222 10.10.3.1
Zone3-SI-A(config-fw-2)# fwall-info 6 4/2 10.10.2.222 10.10.3.2
Zone3-SI-A(config-fw-2)# fwall-info 7 4/1 10.10.2.223 10.10.3.1
Zone3-SI-A(config-fw-2)# fwall-info 8 4/2 10.10.2.223 10.10.3.2
Zone3-SI-A(config-fw-2)# exit
Zone3-SI-A(config)# vlan 1
Zone3-SI-A(config-vlan-1)# static-mac-address 00e0.5201.a182 ethernet 4/1
priority 1 router-type
Zone3-SI-A(config-vlan-1)# static-mac-address 00e0.5207.9744 ethernet 4/2
priority 1 router-type
Zone3-SI-A(config-vlan-1)# exit
Zone3-SI-A(config)# server fw-group 2
Zone3-SI-A(config-fw-2)# fw-predictor per-service-least-conn
Zone3-SI-A(config-fw-2)# exit
Zone3-SI-A(config)# access-list 2 permit 10.10.2.0 0.0.0.255
Zone3-SI-A(config)# server fw-group 2
Zone3-SI-A(config-fw-2)# fwall-zone zone2 2 2
Zone3-SI-A(config-fw-2)# exit
Page view 111
1 2 ... 107 108 109 110 111 112 113 114 115 116 117 ... 187 188

Comments to this Manuals

No comments