Brocade Communications Systems ServerIron ADX 12.4.00 Service Manual Page 5

  • Download
  • Add to my manuals
  • Print
  • Page
    / 188
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 4
ServerIron ADX Firewall Load Balancing Guide v
53-1002436-01
DRAFT: BROCADE CONFIDENTIAL
Chapter 4 Configuring Multizone FWLB
In this chapter . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71
Zone configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71
Configuring basic multizone FWLB . . . . . . . . . . . . . . . . . . . . . . . . . .72
Configuration example for basic multizone FWLB . . . . . . . . . . . . . . 74
Commands on ServerIron ADX Zone1-SI . . . . . . . . . . . . . . . . . . 74
Commands on Zone2-SI in zone 2 . . . . . . . . . . . . . . . . . . . . . . . 77
Commands on Zone3-SI in zone 3 . . . . . . . . . . . . . . . . . . . . . . .78
Configuring highly-availability multizone FWLB. . . . . . . . . . . . . . . . .79
Failover algorithm . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .81
Configuration example for a high-availability multizone FWLB . . . . 81
Commands on Zone1-SI-A zone 1 . . . . . . . . . . . . . . . . . . . . . . . 81
Commands on Zone1-SI-S in zone 1 . . . . . . . . . . . . . . . . . . . . .86
Commands on Zone2-SI-A in zone 2 . . . . . . . . . . . . . . . . . . . . . 87
Commands on Zone2-SI-S in zone 2 . . . . . . . . . . . . . . . . . . . . .88
Commands on Zone3-SI-A in zone 3 . . . . . . . . . . . . . . . . . . . . .89
Commands on Zone3-SI-S in zone 3 . . . . . . . . . . . . . . . . . . . . .90
Configuration examples with Layer 3 routing . . . . . . . . . . . . . . . . . .92
Multizone FWLB with one sub-net and one
virtual routing interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .92
Multizone FWLB with multiple sub-nets and
multiple virtual routing interfaces. . . . . . . . . . . . . . . . . . . . . . .102
Chapter 5 Configuring FWLB for NAT Firewalls
In this chapter . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .113
NAT firewalls . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .113
Configuring basic Layer 3 FWLB for NAT firewalls. . . . . . . . . . . . . .114
Defining the firewalls and adding them to the
firewall group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .115
Configuring the paths and adding static MAC entries. . . . . . .116
Preventing load balancing of the NAT addresses . . . . . . . . . .118
Configuration example for FWLB with Layer 3 NAT firewalls . . . . .119
CLI commands on ServerIron ADX A (external) . . . . . . . . . . . .119
CLI commands on ServerIron ADX B (internal) . . . . . . . . . . . .121
Configuring IronClad Layer 3 FWLB for NAT . . . . . . . . . . . . . . . . . .121
Specifying the partner port . . . . . . . . . . . . . . . . . . . . . . . . . . . .123
Specifying the router ports . . . . . . . . . . . . . . . . . . . . . . . . . . . .123
Defining the firewalls and adding them to the
firewall group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .123
Configuring paths and adding static MAC entries
for Layer 3 firewalls . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .125
Configuring the ServerIron ADX priority . . . . . . . . . . . . . . . . . .128
Preventing load balancing of the NAT addresses . . . . . . . . . .128
Page view 4
1 2 3 4 5 6 7 8 9 10 ... 187 188

Comments to this Manuals

No comments