Configure the clean-side web switch – Nortel Networks WEB OS 212777 User Manual

Page 322

Advertising
background image

Web OS 10.0 Application Guide

322

n

Chapter 13: Firewall Load Balancing

212777-A, February 2002

Configure the Clean-Side Web Switch

1.

Define the clean-side IP interfaces.

Create one clean-side IP interface on a different subnet for each firewall being load balanced.

N

OTE

An extra IP interface (IF 1) prevents server-to-server traffic from being redirected.

2.

Configure the dirty-side IP interfaces as if they were real servers on the clean side.

You should already have configured a dirty-side IP interface on a different subnet for each fire-
wall path being load balanced. Create two real servers on the clean-side switch, using the IP
address of each dirty-side IP interface.

N

OTE

Each of the four IP interfaces (two on each Web switch) in this example must be con-

figured for a different IP subnet.

3.

Place the real servers into a real server group.

>> # /cfg/ip/if 1

(Select IP interface 1)

>> IP Interface 1# addr 20.1.1.1

(Set the IP address for interface 1)

>> IP Interface 1# mask 255.255.255.0

(Set subnet mask for interface 1)

>> IP Interface 1# ena

(Enable IP interface 1)

>> IP Interface 1# ../if 2

(Select IP interface 2)

>> IP Interface 2# addr 10.1.3.1

(Set the IP address for interface 2)

>> IP Interface 2# mask 255.255.255.0

(Set subnet mask for interface 2)

>> IP Interface 2# ena

(Enable IP interface 2)

>> IP Interface 2# ../if 3

(Select IP interface 3)

>> IP Interface 3# addr 10.1.4.1

(Set the IP address for interface 3)

>> IP Interface 3# mask 255.255.255.0

(Set subnet mask for interface 3)

>> IP Interface 3# ena

(Enable IP interface 3)

>> IP Interface 5# /cfg/slb/real 1

(Select real server 1)

>> Real server 1# rip 10.1.1.1

(Assign dirty-side IF 1 address)

>> Real server 1# ena

(Enable real server 1)

>> Real server 1# ../real 2

(Select real server 2)

>> Real server 2# rip 10.1.2.1

(Assign dirty-side IF 2 address)

>> Real server 2# ena

(Enable real server 2)

>> Real server 2# ../group 1

(Select real server group 1)

>> Real server group 1# add 1

(Select real server 1 to group 1)

>> Real server group 1# add 2

(Select real server 2 to group 1)

Advertising