128
Establishing your network
Defining security gateway routing
Similar to network interfaces, the default gateway is defined by running the System Setup Wizard.
Each security gateway must have a default gateway assigned to one of the interfaces to route packets
properly.
“Making system changes with the System Setup Wizard”
Statically or dynamically configured routes
For smaller networks, it is usually easier to configure static routes by hand; there is normally only one
or two entries that you need to add to the security gateway’s routing table to accomplish this. However,
with larger networks, especially ones that are constantly changing, it might be more efficient to
implement a dynamic routing protocol. Regardless of the method you choose, the security gateway’s
routing table is updated anytime you either add routes manually, or configure the security gateway to
accept a dynamic routing protocol’s routing information.
Configuring static routes
Static routes are normally configured when you first set up the security gateway, or when you add new
routes to your existing network to which the security gateway is not directly connected. Once you
configure a static route, and save the changes, the new route takes effect immediately. Static routes
can be added or modified at any time, as these procedures do not require a reboot.
Prerequisites
None.
To configure static routes
1
In the SGMI, in the left pane, under Assets, click
Network
.
2
In the right pane, on the Routes tab, click
New
.
3
In the IP Route Properties dialog box, on the General tab, to enable this route, check
Enable
.
4
In the Destination text box, type the destination IP address.
5
In the Netmask text box, confirm that the netmask is appropriate for the destination address you
typed in the Destination text box.
6
In the Next hop text box, type the IP address of the next hop router for the address you typed in the
Destination text box.
7
In the Caption text box, type a brief description of the route.
8
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
9
Click
OK
.
10
Optionally, do one of the following:
■
To save your configuration now an activate later, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
“IP Route Properties—General tab”
■
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...