Kerio Tech Firewall6 User Manual

Page 52

Advertising
background image

Chapter 6

Internet Connection

52

Resulting interface configuration

When you finish set-up in Traffic Policy Wizard, the resulting configuration can be viewed

under Configuration Interfaces and edited if desirable.

Figure 6.3

Configuration of interfaces — connection by a single leased link

The Internet Interfaces groups includes only card Internet selected in the third page of the

wizard. Other interfaces (including Dial-In) are considered as segments of the LAN and put in

Trusted / Local interfaces.

If the setting does not mirror the real configuration of the network correctly (for instance there

is an interface planned for

DMZ

), you can move the particular interface to Other Interfaces.

For these interfaces, it will be necessary to define corresponding traffic rules manually (see

chapter

7.3

).

It is also possible to add new interfaces to the Internet Interfaces group.

Packets

will then be

routed to corresponding target networks in accordance with the system routing table (see also

chapter

18.1

) and IP address translation will be applied (

NAT

). However, such configuration is

not significantly helpful in place.

Warning

It is necessary that in the Single internet Link mode the default gateway is set only at the “main”

Internet interface! If WinRoute detects more default gateways, error is announced. Solve this

problem immediately, otherwise traffic from the firewall and the LAN to the Internet will not

work correctly.

Advertising