Cisco PIX 525 Dokumentacja Strona 63

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 466
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 62
2-3
Cisco PIX Firewall and VPN Configuration Guide
78-15033-01
Chapter 2 Establishing Connectivity
Setting Default Routes
Setting Default Routes
This section describes how to set default routes on devices and hosts that communicate with the
PIX
Firewall. It includes the following topics:
Setting Default Routes for Network Routers, page 2-3
Setting the Default Route for Network Hosts, page 2-4
Setting Default Routes for Network Routers
A route, which is either statically defined or dynamically discovered, specifies the path used by a router
or host to forward IP packets. You must define a special route, called the default route, for forwarding
packets when no route is known. Packets destined for an unknown network are forwarded to the default
router, which is sometimes called the gateway of last resort.
Configure
PIX
Firewall
interfaces
Assign an IP address and subnet mask to each interface
in your PIX
Firewall that connects to another network.
All interfaces in a new PIX Firewall are shut down by
default. You need to explicitly enable each interface
you are using.
Security levels let you control access between systems
on different interfaces. You can use the default interface
names and security levels or change them according to
your security policy.
Refer to the “Configuring PIX Firewall
Interfaces” section on page 2-4.
Configure the
PIX
Firewall for
routing
You can configure each inside or perimeter
PIX
Firewall interface for the Routing Information
Protocol (RIP) or Open Shortest Path First (OSPF)
routing protocol. You can also configure the
PIX
Firewall to broadcast an inside or perimeter
interface as a “default” route.
Refer to the “Configuring the PIX Firewall for
Routing” section on page 2-13.
Establish
outbound
connectivity
Enable Network Address Translation (NAT) and Port
Address Translation (PAT) to establish outbound
connectivity from hosts on higher security interfaces to
hosts on lower security interfaces.
Refer to the “Testing and Saving Your
Configuration” section on page 2-22.
Test connectivity Temporarily enable ICMP messages to test that a host
is reachable through the PIX
Firewall.
Refer to the “Testing and Saving Your
Configuration” section on page 2-22.
Save your
configuration
When you complete entering commands in the
configuration, save it to Flash memory and then reboot
the PIX
Firewall.
Refer to the “Saving Your Configuration”
section on page 2-25.
Table 2-1 Initial Configuration Checklist (continued)
Task Explanation Procedure
Przeglądanie stron 62
1 2 ... 58 59 60 61 62 63 64 65 66 67 68 ... 465 466

Komentarze do niniejszej Instrukcji

Brak uwag