Load Balancing & Networking
The 192.168.211.0 network rules remain unchanged. We have new rules for the 10.0.0.0 network:
Rule 3
is for sending packets on the external network interface (wm0 in this case) to the 10.0.0.0
network from the 10.0.0.0 network.
Rules 5 and 6 for packets between the 10.0.0.0 network to any other network.
Note that
Rule 4
is a block rule which prevents traffic between the 10.0.0.0 network and all
subnets known to the system. Such a rule doesn't exist for the 192.168.211.0 network because we
have not enabled routing for it.
Since the new
external
network is the one is used for sending packets to the Internet, we also
make it the default network for sourcing packets.
We see that setting this flag has created a DSS table entry. This entry is a definition for the 0/0
destination network, which specifies that the
external
VLAN is the one connected to this network,
and when Equalizer needs to send packets to this network, it should use the 10.0.0.68 IP address.
This setup is sufficient for most dual-network configurations:
102
Copyright © 2014 Coyote Point Systems, A Subsidiary of Fortinet, Inc.
Summary of Contents for Equalizer GX Series
Page 18: ......
Page 32: ...Overview 32 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 42: ......
Page 52: ......
Page 64: ......
Page 72: ......
Page 76: ......
Page 228: ......
Page 238: ......
Page 476: ......
Page 492: ......
Page 530: ......
Page 614: ......
Page 626: ......
Page 638: ......
Page 678: ......
Page 732: ...Using SNMP Traps 732 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 754: ......
Page 790: ......
Page 804: ......
Page 842: ......
Page 866: ......