
Network Configuration
Default Source Selection
The DSS, or Default Source Selection table is a listing of all destination networks configured in Equalizer , and a
mapping of the IP addresses that Equalizer should use when communicating with these networks. The local
network that the destination network is attached to can be inferred from the IP addresses. The DSS table can be
viewed by entering:
eqcli > show sbr
The display will be as follows:
In the example above the DSS table contains two rules:
1. One for the 192.168.105/24 destination network, which is connected to the 192.168.211/24 local network
(and will use IP address 192.168.211.8 to communicate with this network),
2. One for any other remote networks, connected to the 10.0.0/24 network (and will use the 10.0.0.68 IP
address to communicate with them).
Source Routing Table
The
sroute
table, or
Source Routing Table
is an excellent tool for identifying how a packet should be sent by the
system. It can be displayed using the show sbr command from the Equalizereqcli as shown below:
In the example above traffic that is sourced from all local networks is sent through the 10.0.0.254 gateway, unless
it is destined for the 192.168.105.0/24 destination network. Because the default gateway for the 192.168.211.0/24
local network is on the 10.0.0/24 local network, there is an outbound NAT configuration between these two
networks.
IP Filter Rules
124
Copyright © 2013 Coyote Point Systems. A subsidiary of Fortinet, Inc.
Comentarios a estos manuales