Cisco PIX 525 Spezifikationen Seite 529

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 604
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 528
B-1
Cisco Security Appliance Command Line Configuration Guide
OL-6721-01
APPENDIX
B
Sample Configurations
This appendix illustrates and describes a number of common ways to implement the security appliance,
and includes the following topics:
Example 1: Multiple Mode Firewall With Outside Access, page 1
Example 2: Single Mode Firewall Using Same Security Level, page 5
Example 3: Shared Resources for Multiple Contexts, page 7
Example 4: Multiple Mode, Transparent Firewall with Outside Access, page 11
For failover examples, see Chapter 11, “Failover Configuration Examples,”
Example 1: Multiple Mode Firewall With Outside Access
This configuration creates three security contexts plus the admin context, each with an inside and an
outside interface. The Customer C context includes a DMZ interface where a Websense server for HTTP
filtering resides on the service provider premises (see Figure B-1).
Inside hosts can access the Internet through the outside using dynamic NAT or PAT, but no outside hosts
can access the inside.
The Customer A context has a second network behind an inside router.
The admin context allows SSH sessions to the security appliance from one host.
Although inside IP addresses can be the same across contexts when the interfaces are unique, keeping
them unique is easier to manage.
Seitenansicht 528
1 2 ... 524 525 526 527 528 529 530 531 532 533 534 ... 603 604

Kommentare zu diesen Handbüchern

Keine Kommentare