
3.6. Going Further with CorePlus
After initial setup is complete, the administrator is ready to go further with configuring CorePlus to
suit the requirements of a particular networking scenario. The reference documentation provided for
this consists of the following manuals:
•
The CorePlus Administrators Guide
•
The CLI Reference Guide
•
The Log Reference Guide
The CorePlus Administrators Guide
This guide is a comprehensive description of all CorePlus features and includes a detailed table of
contents with a comprehensive index to quickly locate particular topics.
Examples of the setup for various scenarios are included but screenshots are kept to a minimum
since the user has a variety of management interfaces to choose from.
Basic CorePlus Objects and Rules
At minimum, the new administrator should first aquaint themselves with the CorePlus Address Book
for defining IP address objects and with the CorePlus IP rule set for defining IP rules which can
allow or block traffic types and which are also used to set up NAT address translation.
IP rules also demonstrate the way Security Policies are set up in CorePlus by identifying the
targeted traffic through combinations of the source/destination interface/network combined with
protocol type. By default, no IP rules are defined so all traffic is dropped. At least one IP rule needs
to be defined before traffic can traverse the Clavister Security Gateway.
In addition to IP rules, routes need to be defined so that traffic can be sent on the correct interface to
reach its final destination.
ALGs
Once the address book and IP rules are understood, the various ALGs will probably be of interest
for managing higher level protocols such as HTTP. For instance, for management of web surfing,
the HTTP ALG provides a number of important features such as content filtering.
VPN Setup
A common requirement is to quickly setup VPN networks based on Clavister Security Gateways.
The CorePlus Administrators Guide includes an extensive VPN section and as part of this, a VPN
Quick Start section which goes through a checklist of setup steps for nearly all types of VPN
scenarios.
Included with the quick start section is a checklist for troubleshooting and advice on how best to
deal with the networking complications that can arise with certificates.
Log Messages
By default, certain events will generate log messages and at least one log server should be
configured in CorePlus to capture these messages although a memlog feature is provided which
captures recent log messages in hardware memory. The administrator should review what events are
important to them and at what severity. The The Log Reference Guide provides a complete listing of
3.6. Going Further with CorePlus
Chapter 3. CorePlus Configuration
56
Содержание SG4300 Series
Страница 7: ...1 1 Unpacking the Product Chapter 1 Product Overview 7...
Страница 11: ...1 3 The Keypad and Display Chapter 1 Product Overview 11...
Страница 19: ...2 4 Connecting Power Chapter 2 Installation 19...
Страница 58: ...3 6 Going Further with CorePlus Chapter 3 CorePlus Configuration 58...
Страница 62: ...Appendix B Declarations of Conformity 62...
Страница 63: ...Appendix B Declarations of Conformity 63...