Brocade Communications Systems ServerIron ADX 12.4.00 Service Manual Page 88

  • Download
  • Add to my manuals
  • Print
  • Page
    / 188
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 87
ServerIron ADX Firewall Load Balancing Guide 77
53-1002436-01
Configuration example for basic multizone FWLB
4
DRAFT: BROCADE CONFIDENTIAL
Commands on Zone2-SI in zone 2
The following commands configure ServerIron ADX “Zone2-SI” in zone 2 in Figure 13 on page 73.
The configuration is similar to the one for Zone1-SI, with the following exceptions:
The management IP address is different.
The default gateway goes to a different interface on FW1.
The paths are different due to the ServerIron ADX’s placement in the network. (However, like
Zone1-SI, ServerIron ADX Zone2-SI has a path through each firewall to the ServerIron ADXs in
the other zones, and has a path to its directly attached router.)
An ACL and zone definition are configured for zone 3. Because this ServerIron ADX is in zone 2,
the configuration does not include an ACL and zone definition for zone 2. This ServerIron ADX
also does not contain an ACL or zone definition for zone 1. As a result, by default, this
ServerIron ADX forwards packets that are not addressed to the ServerIron ADX’s own sub-net,
or to a sub-net in zone 3, to zone 1.
ServerIronADX(config)# hostname Zone2-SI
Zone2-SI(config)# ip address 209.157.24.15 255.255.255.0
Zone2-SI(config)# ip default-gateway 209.157.25.1
Zone2-SI(config)# no span
Zone2-SI(config)# server router-ports 5
Zone2-SI(config)# server fw-name FW1 209.157.25.1
Zone2-SI(config-rs-FW1)# exit
Zone2-SI(config)# server fw-name FW2 209.157.25.254
Zone2-SI(config-rs-FW2)# exit
Zone2-SI(config)# access-list 3 permit 209.157.23.0 0.0.0.255
Zone2-SI(config)# server fw-group 2
Zone2-SI(config-fw-2)# fwall-zone Zone3 3 3
Zone2-SI(config-fw-2)# fw-name FW1
Zone2-SI(config-fw-2)# fw-name FW2
Zone2-SI(config-fw-2)# fwall-info 1 1 209.157.25.15 209.157.24.1
Zone2-SI(config-fw-2)# fwall-info 2 16 209.157.23.11 209.157.24.1
Zone2-SI(config-fw-2)# fwall-info 3 16 209.157.25.15 209.157.24.254
Zone2-SI(config-fw-2)# fwall-info 4 1 209.157.23.11 209.157.24.254
Zone2-SI(config-fw-2)# fwall-info 5 5 209.157.25.200 209.157.25.200
Zone2-SI(config-fw-2)# exit
Zone2-SI(config)# static-mac-address abcd.5200.348b ethernet 1 priority 1
router-type
Zone2-SI(config)# static-mac-address abcd.5200.0b4e ethernet 16 priority 1
router-type
Zone2-SI(config)# write memory
Zone2-SI(config)# exit
Page view 87
1 2 ... 83 84 85 86 87 88 89 90 91 92 93 ... 187 188

Comments to this Manuals

No comments