
Nortel Switched Firewall 2.3.3 User’s Guide and Command Reference
46
Initial setup
213455-L, October 2005
When configuring interfaces, make sure that each interface IP address is within the same
subnet as the network to which it is connected.
3.
Configure a default gateway or static route for the external networks.
Traffic headed to the Internet needs to be directed to its next hop. In this example, a default
gateway is used. The default gateway address is the same address as the router’s internal IP
interface. Note that Interface 2 was configured to be on the same subnet as the default gateway:
4.
Allow a client workstation remote access to the Firewall.
In this step, you add the IP address of a client for remote management access such as Telnet,
Browser-Based Interface, or SSH (but not for SmartCenter Servers or SMART Clients).
Entering a 32-bit mask limits access only to that particular IP address.
5.
Apply the configuration changes:
This command applies the configuration changes on the Firewall.
>> Main#
/cfg/net/port 3
(Select the Port 3 Menu)
>> Port 3#
name if_1
(Name this port for Interface 1)
>> Port 3#
apply
(Apply the setting to the port)
>> Interface 1#
/cfg/net/if 1
(Select the Network Interface 1 Menu)
>> Interface 1#
addr1 10.3.0.1
(Set IP interface to Trusted Network)
>> Interface 1#
mask 16
(Set 16-bit Subnet mask)
>> Interface 1#
port 3
(Assign this interface to port 3)
>> Interface 1#
ena
(Enable Interface 1)
>>
/cfg/net/port 4
(Select the Port 4 Menu)
>> Port 4#
name if_2
(Name this port for Interface 2)
>> Port 4#
apply
(Apply the setting to the port)
>> Port 4#
/cfg/net/if 2
(Select the Network Interface 2 Menu)
>> Interface 2#
addr1 172.25.3.10
(Set IP interface to
Untrusted network)
>> Interface 2#
mask 24
(Set 24-bit Subnet mask)
>> Interface 2#
port 4
(Assign this interface to port 4)
>> Interface 2#
ena
(Enable Interface 2)
>>
/cfg/net/gateway 172.25.3.23
(Set gateway IP address)
>> Gateway Settings#
apply
(Enable the gateway)
>>
/cfg/sys/accesslist
(Select the Access List menu)
>> Access List#
add 10.3.0.2
(Enter IP address of remote client)
Enter netmask:
255.255.255.255
(Limit access only to client)
>> Access List#
apply
Содержание 5100 Series Release 2.3.3
Страница 18: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 18 Preface 213455 L October 2005...
Страница 20: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 20 Getting started 213455 L October 2005...
Страница 28: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 28 Introduction 213455 L October 2005...
Страница 90: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 90 Initial setup 213455 L October 2005...
Страница 188: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 188 Redundant Firewalls 213455 L October 2005...
Страница 228: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 228 Applications 213455 L October 2005...
Страница 248: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 248 Basic system management 213455 L October 2005...
Страница 250: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 250 Command reference 213455 L October 2005...
Страница 264: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 264 The Command Line Interface 213455 L October 2005...
Страница 374: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 374 Command reference 213455 L October 2005...
Страница 376: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 376 Appendices 213455 L October 2005...
Страница 406: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 406 Common tasks 213455 L October 2005...