
Network Configuration
0.0.0.0/0
5: pass on interface wm1 hits: 0 bytes: 0
From To
192.168.211.0/24 -> any
6: block on interface wm0 hits: 0 bytes: 0
From To
10.0.0.0/24 192.168.211.0/24
-> 10.0.0.0/24
0.0.0.0/0
7: pass on interface wm0 hits: 3 bytes: 517
From To
10.0.0.0/24 -> any
8: pass on interface wm0 hits: 0 bytes: 0
From To
any 192.168.211.0/24
-> 10.0.0.0/24
0.0.0.0/0
9: block all hits: 0 bytes: 0
The main difference between these rules and those in Dual VLAN/Network with 2
Gateways is that because of the new permissions, Rules 2 and 3 now include both networks in them, meaning that
traffic can be sent to either network rather than just one. Additionally, rule 8 has replaced two separate rules,
because all traffic coming from the Internet will now enter Equalizer through the wm0 interface.
This configuration corresponds to the same scenario as Standard Dual Network configuration, but with the
requirement that the internal servers are required to be able to access the Internet.
94
Copyright © 2013 Coyote Point Systems. A subsidiary of Fortinet, Inc.
Comentarios a estos manuales