
7
Configuring Traffic Management
364
Voyager Reference Guide
VPN-1/FireWall-1) to process VPN or SecuRemote traffic but not want to
route unencrypted traffic through the cluster.For this purpose, you can use a
configuration similar to the one shown in the following diagram:
The purpose of this configuration would be to route the outgoing unencrypted
traffic through the default gateway and route the outgoing encrypted traffic
through the cluster. Traffic that passes through the cluster is NATed so that the
source address of a packet is translated to one of the addresses in the IP pool
of the cluster node that handles the connection.
To set up this configuration, you would:
!
Configure the IP pools in VPN-1/FireWall-1
!
On the internal router:
VPN/SecuRemote
Traffic
Firewall A
IP Pool: 10.1.2.0/24
Firewall B
IP Pool: 10.1.3.0/24
Internal Cluster IP
Address
192.168.1.3
192.168.1.2
Primary Cluster Protocol
Network 192.168.3.0
192.168.3.1
192.168.3.2
Internal
Router
192.168.1.10
192.168.1.10
Internet
Default Gateway
192.168.1.1
192.168.1.0
Unencrypted Traffic
Содержание Network Voyager
Страница 1: ...Voyager Reference Guide Part No N450820002 Rev A Published December 2003 ...
Страница 4: ...4 Voyager Reference Guide ...
Страница 30: ...2 How to Use Voyager 30 Voyager Reference Guide ...
Страница 32: ...3 Command Line Utility Files 32 Voyager Reference Guide ...
Страница 220: ...5 Configuring Interfaces 220 Voyager Reference Guide ...
Страница 446: ...7 Configuring Traffic Management 448 Voyager Reference Guide ...
Страница 488: ...8 Configuring Router Services 490 Voyager Reference Guide To make your changes permanent click SAVE ...
Страница 618: ...10 Configuring Security and Access 620 Voyager Reference Guide ...
Страница 668: ...14 Configuring IPv6 670 Voyager Reference Guide ...
Страница 672: ...15 IPSO Process Management 674 Voyager Reference Guide ...
Страница 700: ...Index 702 Voyager Reference Guide ...