Nortel Networks WEB OS 212777 User Manual

Page 341

Advertising
background image

Web OS 10.0 Application Guide

Chapter 13: Firewall Load Balancing

n

341

212777-A, February 2002

Complete the Configuration of the Primary Clean-Side Web Switch

1.

Create an FWLB real server group on the primary clean-side Web switch.

A real server group is used as the target for the FWLB redirection filter. Each IP address
assigned to the group represents a return path through a different firewall. In this case, since
two firewalls are used, two addresses are added to the group. The two addresses are the inter-
faces of the dirty-side Web switch, and are configured as if they are real servers.

N

OTE

Remember that IF 2 is used on all Web switches whenever routing through the top

firewall, and IF 3 is used on all Web switches whenever routing through the lower firewall.

N

OTE

The clean-side Web switch must use the same metric as defined on the dirty side. For

information on using metrics other than

hash

, see

“Free-Metric FWLB” on page 346

.

>> # /cfg/slb

>> # on

>> # real 1

>> # rip 10.10.2.1

(IF2 of the primary dirty-side Web switch)

>> # ena

>> # ../real 2

>> # rip 10.10.2.2

(IF2 of the primary dirty-side Web switch)

>> # ena

>> # ../group 1

>> # add 1

>> # add 2

>> # metric hash

Advertising