Single VLAN/Subnet with a Default Gateway
A system can be connected to the Internet by adding a default route (the newly-added rules are in
italics) because there is only a single Equalizer local network.
eqcli >
vlan
internal
subnet
net
default_route 192.168.211.1
eqcli: 12000287: Operation successful
Source Routing Table:
192.168.211.0/24:
default
via 192.168.211.1
IP Filter Rules:
IPv4 Rules:
1: pass on interface lo0 all hits: 0 bytes: 0
2: pass on interface wm1 hits: 32 bytes: 1368
From
To
192.168.211.0/24 -> 192.168.211.0/24
3: block on interface wm1 hits: 0 bytes: 0
From
To
192.168.211.0/24 -> 192.168.211.0/24
4: pass on interface wm1 hits: 0 bytes: 0
From
To
192.168.211.0/24 ->
any
5: pass on interface wm1 hits: 0 bytes: 0
From
To
any ->
192.168.211.0/24
6: block all hits: 7 bytes: 799
IPv6 Rules:
1: pass on interface lo0 all hits: 0 bytes: 0
2: pass hits: 0 bytes: 0
From
To
fe80::/10
->
any
Now that we have a non-blank routing configuration, we can see that the source routing table
reflects the change, and that we have a couple of routing-specific IP Filter rules:
Rule 3 is inserted immediately after any 'pass' rules for this subnet. Because there aren't any
other subnets except this one, this rule will not be used (the previous rule allows all packets that
this rule would block).
Copyright © 2014 Coyote Point Systems, A Subsidiary of Fortinet, Inc.
All Rights Reserved.
99
Equalizer Administration Guide
Summary of Contents for Equalizer GX Series
Page 18: ......
Page 32: ...Overview 32 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 42: ......
Page 52: ......
Page 64: ......
Page 72: ......
Page 76: ......
Page 228: ......
Page 238: ......
Page 476: ......
Page 492: ......
Page 530: ......
Page 614: ......
Page 626: ......
Page 638: ......
Page 678: ......
Page 732: ...Using SNMP Traps 732 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 754: ......
Page 790: ......
Page 804: ......
Page 842: ......
Page 866: ......