Coyote Point Systems Equalizer Spezifikationen Seite 86

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 594
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 85
Network Configuration
2: pass on interface wm1 hits: 36 bytes: 1608
From To
192.168.211.0/24 -> 192.168.211.0/24
3: pass on interface wm0 hits: 48 bytes: 2926
From To
10.0.0.0/24 -> 10.0.0.0/24
4: block on interface wm0 hits: 0 bytes: 0
From To
10.0.0.0/24 -> 192.168.211.0/24
10.0.0.0/24
5: pass on interface wm0 hits: 27 bytes: 4916
From To
10.0.0.0/24 -> any
6: pass on interface wm0 hits: 0 bytes: 0
From To
any -> 10.0.0.0/24
7: block all hits: 1 bytes: 328
The 192.168.211.0 network rules remain unchanged. We have new rules for the 10.0.0.0 network:
Rule 3
is for sending packets on the external network interface (wm0 in this case) to the 10.0.0.0 network from the
10.0.0.0 network.
Rules 5 and 6
for packets between the 10.0.0.0 network to any other network.
Note that
Rule 4
is a block rule which prevents traffic between the 10.0.0.0 network and all subnets known to the
system. Such a rule doesn't exist for the 192.168.211.0 network because we have not enabled routing for it.
Since the new
external
network is the one is used for sending packets to the Internet, we also make it the default
network for sourcing packets by setting the def_src_addr flag:
eqcli > vlan external subnet net flags def_src_addr eqcli: 12000287: Operation
successful
eqcli > show sbr
IPv4 Default Source Selection Table:
0/0 10.0.0.68
86
Copyright © 2013 Coyote Point Systems. A subsidiary of Fortinet, Inc.
Seitenansicht 85
1 2 ... 81 82 83 84 85 86 87 88 89 90 91 ... 593 594

Kommentare zu diesen Handbüchern

Keine Kommentare