LX Series Userguid

Embed Size (px)

Citation preview

LX Series L4-7 SwitchPumkin Networks L4-7 SwitchUser Guide

LX, LX SLB, LX FWLB, LX VPNLB () . .

Server/Firewall/VPN Load Balancer Users GuideCopyright c Pumpkin Networks, Inc., All rights reserved.

() . () . , .

LX Series . LX Series . , . LX Series . .

A. LX Series . , . , () . () .

B. LX Series , , , . , .

C. LX , . LX .

PNOS 4.5

-3-

LX Series Users Guide

D. .

.

1

, .

2

LX Series Users Guide

-4-

PNOS 4.5

, . .

1

.

. .

, .

PNOS 4.5

-5-

LX Series Users Guide

Contents ................................................................................................................................................................ 3 CHAPTER1. LX SERIES ................................................................................................................................. 12 1. LX SLB ............................................................................................................................................................ 13 1.1. SERVER LOAD BALANCER(SLB)? .................................................................................................................. 13 1.2. LX SLB ............................................................................................................................................ 14 2. LX FWLB/VPNLB ......................................................................................................................................... 15 2.1. FIREWALL/VPN LOAD BALANCER(FW/VPN LB)? ....................................................................................... 15 2.2. LX FWLB/VPNLB .......................................................................................................................... 16 3. LX SERIES ................................................................................................................................................. 17 3.1 LX SERIES .................................................................................................................................. 17 3.2. LX SERIES ................................................................................................................................................. 19 3.3. LX SERIES ............................................................................................................................................... 23 CHAPTER2. LX SLB ........................................................................................................................................ 32 1. (VIRTUAL SERVER) ......................................................................................................................... 33 2. (ROUTING) ..................................................................................................................................... 34 2.1. DSR (DIRECT SERVER RETURN) ........................................................................................................................ 34 2.2. NAT (NETWORK ADDRESS TRANSLATION) ....................................................................................................... 35 2.3. FNAT (FULL NETWORK ADDRESS TRANSLATION) ............................................................................................ 36 3. (SCHEDULING) ................................................................................................................. 37 3.1. (ROUND ROBIN) ......................................................................................................................... 37 3.2. (LEAST CONNECTION) .................................................................................................................... 38 3.3. (HASHING) ............................................................................................................................................... 39

LX Series Users Guide

-6-

PNOS 4.5

4. (SESSION PERSISTENCE) .............................................................................................................. 40 5. (SERVER HEALTH CHECK) ................................................................................................ 41 6. (HIGH AVAILABILITY) ................................................................................................................... 42 6.1. VRRP (VIRTUAL ROUTER REDUNDANCY PROTOCOL) ...................................................................................... 42 6.2. ACTIVE-STANDBY .................................................................................................................................... 43 6.3. ACTIVE-ACTIVE ....................................................................................................................................... 45 7. (SESSION MIRRORING) ................................................................................................... 46 8. DEFAULT GATEWAY .............................................................................................. 47 9. VLAN ........................................................................................................................................................................ 48 9.1. VLAN (VIRTUAL LAN) ........................................................................................................................... 48 9.2. VLAN ................................................................................................................................................. 50 9.3. TAG / UNTAG ...................................................................................................................................................... 50 9.4. PVID (PORT VLAN ID) ..................................................................................................................................... 50 9.5. VLAN .......................................................................................................................................... 50 CHAPTER3. LX FWLB/VPNLB .................................................................................................................... 51 1. (FIREWALL LOAD BALANCING, FWLB) ..................................................................... 52 2. VPN (VPN LOAD BALANCING, VPNLB)..................................................................................... 53 3. +VPN (FW+VPN LOAD BALANCING) ............................................................................ 54 4. DMZ ................................................................................................................................................................ 55 5. (ROUTING) ..................................................................................................................................... 56 5.1. DSR (DIRECT SERVER RETURN) ....................................................................................................................... 56 5.2. NAT (NETWORK ADDRESS TRANSLATION) ....................................................................................................... 57 6. (SCHEDULING) ................................................................................................................. 58 6.1. (ROUND ROBIN) ......................................................................................................................... 58 PNOS 4.5 -7-

LX Series Users Guide

6.2. (LEAST CONNECTION) .................................................................................................................... 59 6.3. (HASHING) ............................................................................................................................................... 60 7. (SESSION PERSISTENCE) .............................................................................................................. 61 8. (FIREWALL HEALTH CHECK) ....................................................................................... 62 9. (HIGH AVAILABILITY) ................................................................................................................... 64 9.1. VRRP (VIRTUAL ROUTER REDUNDANCY PROTOCOL) ...................................................................................... 64 9.2. ACTIVE-STANDBY .................................................................................................................................... 65 9.3. ACTIVE-ACTIVE ....................................................................................................................................... 67 10. (SESSION MIRRORING) ................................................................................................. 68 11. DEFAULT GATEWAY ............................................................................................ 69 12. EXTERNAL + INTERNAL FWLB/VPNLB ............................................................................................ 70 CHAPTER4. LX SERIES ................................................................................................................................. 72 1. CLI (COMMAND LINE INTERFACE) ..................................................................................................... 73 1.1. (CONSOLE) ........................................................................................................................ 73 1.2. ...................................................................................................................................... 74 1.3. CLI ........................................................................................................................................................ 76 1.4. IP .................................................................................................................................................... 79 1.5. ................................................................................................................................................ 82 1.6. ................................................................................................................................................ 83 1.7. ................................................................................................................................................ 85 1.8. ............................................................................................................................................ 88 1.9. ............................................................................................................................................ 89 1.10. ....................................................................................................................................................... 93 1.11. CLI COMMAND REFERENCE ............................................................................................................................ 94 2. (WEB) ......................................................................................................................................................... 95

LX Series Users Guide

-8-

PNOS 4.5

2.1. ...................................................................................................................................... 95 2.2. ................................................................................................................................. 97 2.3. ..................................................................................................................................... 110 3. NETWORK ............................................................................................................................................................ 115 3.1. PORT CONFIGURATION ..................................................................................................................................... 116 3.2. INTERFACE CONFIGURATION ......................................................................................................................... 131 3.3. DEFAULT GATEWAY CONFIGURATION .............................................................................................................. 170 3.4. DNS CONFIGURATION ..................................................................................................................................... 175 3.5. QOS CONFIGURATION ...................................................................................................................................... 178 3.6. TCP MSS CONFIGURATION ............................................................................................................................. 183 3.7. DYNAMIC ROUTE ............................................................................................................................................. 187 4. LOAD BALANCING ............................................................................................................................................ 191 4.1. SERVER CONFIGURATION ................................................................................................................................. 192 4.2. SERVICE CONFIGURATION................................................................................................................................ 201 4.3. ADVANCED CONFIGURATION ........................................................................................................................... 233 5. AFE ......................................................................................................................................................................... 258 5.1. AFE SERVER CONFIGURATION ......................................................................................................................... 260 5.2. AFE SERVICE CONFIGURATION........................................................................................................................ 262 5.3. AFE ADVANCED CONFIGURATION ................................................................................................................... 276 5.4. AFE TOOL ........................................................................................................................................................ 287 6. SURGE CONTROL .............................................................................................................................................. 289 6.1. SERVER SURGE CONFIGURATION ..................................................................................................................... 290 6.2. CLIENT SURGE CONFIGURATION...................................................................................................................... 297 6.3. HTTP REDIRECTION CONFIGURATION ............................................................................................................ 304 6.4. HTTP LOGOUT CONFIGURATION ..................................................................................................................... 315 7. SECURITY MODULE ......................................................................................................................................... 320 PNOS 4.5 -9-

LX Series Users Guide

7.1. SIGNATURE ....................................................................................................................................................... 321 7.2. POLICY CONFIGURATION .................................................................................................................................. 327 7.3. ACL CONFIGURATION ...................................................................................................................................... 339 7.4. ADVANCED CONFIGURATION ............................................................................................................................ 351 7.5. LIVE UPDATE .................................................................................................................................................... 371 7.6. WHOIS............................................................................................................................................................... 379 8. INFORMATION .................................................................................................................................................... 381 8.1. NETWORK ......................................................................................................................................................... 382 8.2. LOAD BALANCING .......................................................................................................................................... 399 8.3. AFE INFORMATION .......................................................................................................................................... 421 8.4. SURGE CONTROL .............................................................................................................................................. 430 8.5. SECURITY PACK ............................................................................................................................................. 432 8.6. SYSTEM............................................................................................................................................................. 473 9. MONITORING ...................................................................................................................................................... 478 9.1. NETWORK ......................................................................................................................................................... 479 9.2. LOAD BALANCING ........................................................................................................................................... 484 9.3. AFE .................................................................................................................................................................. 492 9.4. SURGE CONTROL .............................................................................................................................................. 496 9.5. SECURITY PACK ................................................................................................................................................ 520 9.6. SYSTEM ............................................................................................................................................................ 556 10. LOG ....................................................................................................................................................................... 561 10.1. SYSTEM LOG ................................................................................................................................................. 562 10.2. BOOT LOG ..................................................................................................................................................... 566 10.3. APPLY LOG .................................................................................................................................................... 567 10.4. LOG ANALYZER ............................................................................................................................................ 568 10.5. AFE LOG ....................................................................................................................................................... 586 11. SYSTEM ADMIN................................................................................................................................................. 591

LX Series Users Guide

- 10 -

PNOS 4.5

11.1. ACCESS........................................................................................................................................................... 592 11.2. USER............................................................................................................................................................... 597 11.3. CONFIGURATIONS .......................................................................................................................................... 602 11.4. SYSLOG .......................................................................................................................................................... 622 11.5. SNMP ............................................................................................................................................................ 627 11.6. E-MAIL ALERT ............................................................................................................................................... 631 11.7. SYSTEM COMMAND ....................................................................................................................................... 639 11.8. SUPPORT ......................................................................................................................................................... 657 CHAPTER5. LX SERIES ............................................................................................................................... 677 CHAPTER6. LX SLB CASE STUDY ..................................................................................................................... 678 CHAPTER7. LX FWLB/VPNLB CASE STUDY .................................................................................................. 679

PNOS 4.5

- 11 -

LX Series Users Guide

Chapter1. LX Series

LX Series Users Guide

- 12 -

PNOS 4.5

1. LX SLB 1.1. Server Load Balancer(SLB)?SLB . ( 3 SLB ) SLB Router . . SLB SLB SLB . SLB NAT(Network Address Translation), FNAT(Full Network Address Translation), DSR(Direct Server Return) , Round Robin, Least Connection, Hashing Server . 95/98/NT/2000 , LINUX, FreeBSD, Solaris .

3 SLB

PNOS 4.5

- 13 -

LX Series Users Guide

1.2. LX SLB A. Direct Server Return(DSR) Network Address Translation(NAT) Full Network Address Translation(Full NAT) B. (Weighted) Round-Robin (Weighted) Least Connection Hashing C. VRRP L4 L4 Session Mirroring L3/L4/L7 Level D. DDoS/DoS Signature ACL Firewall Rate Control , , E. Web CLI , Email Alert, Syslog, SNMP Statistics (Session, Traffic )

LX Series Users Guide

- 14 -

PNOS 4.5

2. LX FWLB/VPNLB 2.1. Firewall/VPN Load Balancer(FW/VPN LB)?FW/VPN LB Firewall/VPN Firewall/VPN Firewall/VPN Firewall/VPN . ( 4 FWLB/VPNLB ) FW/VPN LB FW/VPN FW/VPN . FW/VPN FW/VPN . FW/VPN LB FW/VPN LB FW/VPN LB . FW/VPN LB NAT(Network Address Translation), DSR(Direct Server Return) , Round Robin, Least Connection, Hashing FW/VPN . FW/VPN .

4 FWLB/VPNLB

PNOS 4.5

- 15 -

LX Series Users Guide

2.2. LX FWLB/VPNLB A. Direct Server Return(DSR) Network Address Translation(NAT) B. (Weighted) Round-Robin (Weighted) Least Connection Hashing C. FW/VPN LB External+Internal VRRP L4 L4 Session Mirroring TCP/UDP/IP FW/VPN L3 Level Health Check DMZ Zone Health Check D. DDoS/DoS Signature ACL Firewall Rate Control , , E. Web CLI , Email Alert, Syslog, SNMP Statistics (Session, Traffic )

LX Series Users Guide

- 16 -

PNOS 4.5

3. LX Series 3.1 LX Series LX Series Layer4 ~ Layer7 . LX SLB , FW/VPN . , . LX Series 10Giga Ethernet, Giga Ethernet, Fast Ethernet . 10Giga LX 9424, Giga LX 4020, LX 4008, LX 2008 , 100M LX 1008 .

A. LX 9424

Giga SLB/FWLB/VPNLB 10Gbps Ethernet 4 10/100/1000 Ethernet 16 (Copper) 10/100/1000 Ethernet Combo 8 VLAN

B. LX 4020

Giga SLB/FWLB/VPNLB 10/100/1000Mbps Ethernet (Copper) SFP 8 10/100/1000Mbps Ethernet 12 (Copper) PNOS 4.5 - 17 -

LX Series Users Guide

VLAN

C. LX 4008

Giga SLB/FWLB/VPNLB 10/100/1000Mbps Ethernet Copper SFP 8 VLAN

D. LX 2510

Giga SLB/FWLB/VPNLB 1000Mbps Ethernet Copper SFP 10 VLAN

LX Series Users Guide

- 18 -

PNOS 4.5

3.2. LX Series A. LX 9424 LX 4020

SLB/FWLB/VPNLBDSR, NAT, Full NAT(Weighted) Round Robin, (Weighted) Least Connection, Hashing

SLB/FWLB/VPNLBDSR, NAT, Full NAT(Weighted) Round Robin, (Weighted) Least Connection, Hashing

Health Check L4 Redundancy

ICMP(L3), TCP(L4), CONTENT(L7) TCP,UDP,IP based Protocols MAX 16,000,000 Sessions VRRP(Virtual Router Redundancy Protocol), Session Mirroring

ICMP(L3), TCP(L4), CONTENT(L7) TCP,UDP,IP based Protocols MAX 10,000,000 Sessions VRRP(Virtual Router Redundancy Protocol), Session MirroringIP/Port/Contents based filter Rate Control Anti DoS/DDoS

IP/Port/Contents based filter Rate Control Anti DoS/DDoS

VLAN

IEEE802.1Q Tagged VLAN support Web GUI/CLI SNMP/Syslog/E-mail Alert

IEEE802.1Q Tagged VLAN support Web GUI/CLI SNMP/Syslog/E-mail Alert

1 LX (1)

PNOS 4.5

- 19 -

LX Series Users Guide

LX 4008

LX 2510

SLB/FWLB/VPNLBDSR, NAT, Full NAT(Weighted) Round Robin, (Weighted) Least Connection, Hashing

SLB/FWLB/VPNLBDSR, NAT, Full NAT(Weighted) Round Robin, (Weighted) Least Connection, Hashing

Health Check L4 Redundancy

ICMP(L3), TCP(L4), CONTENT(L7) TCP,UDP,IP based Protocols MAX 7,500,000 Sessions VRRP(Virtual Router Redundancy Protocol) Session Mirroring

ICMP(L3), TCP(L4), CONTENT(L7) TCP,UDP,IP based Protocols MAX 5,000,000 Sessions VRRP(Virtual Router Redundancy Protocol) Session MirroringIP/Port/Contents based filter Rate Control Anti DoS/DDoS

IP/Port/Contents based filter Rate Control Anti DoS/DDoS

VLAN

IEEE802.1Q Tagged VLAN support Web GUI/CLI SNMP/Syslog/E-mail Alert

IEEE802.1Q Tagged VLAN support Web GUI/CLI SNMP/Syslog/E-mail Alert

2 LX (2)

LX Series Users Guide

- 20 -

PNOS 4.5

B. LX 9424 LX 4020

10G x 4 + 10/100/1000Base-TX x 8 or 1000BASE-X x 8 + 10/100/1000Base-TX x 16

10/100/1000Base-TX x 8 or 1000BASE-X x 8 + 10/100/1000Base-TX x 12

CPU

1.8GHz Quard Core Dual Processor 4GB 1GB Flash

1.8 GHz dual core processor 2 GB 1GB Flash

192 Gbps 600 W (Hot-Swap Redundant) AC 90~264V Full Range@47/63Hz (Redundant)

48 Gbps 460 W (Hot-Swap Redundant) AC 90~264V Full Range@47/63Hz (Redundant) 2 lines of 16Characters display 70mm fan x 3 84 x 432 x 535mm [2U]

LCD FAN (HxWxD)

Graphicical VFD 80mm Fan x 3 174 x 432 x 515mm [4U]

3 LX (1)

PNOS 4.5

- 21 -

LX Series Users Guide

LX 4008

LX 2510

CPU

10/100/1000Base-TX x 8 or 1000BASE-X x 8

10/100/1000Mbps Base-T Ethernet Port x 6 + 1000BASE-X x 4

1.66 GHz dual core processor 1GB 1GB Flash

Intel 2.2 GHz 1GB 1GB Flash

460 W (Hot-Swap Redundant) AC 90~264V Full Range@47/63Hz (Redundant)

220 W AC/DC 90 ~ 264V full range @47 ~ 63 Hz 40mm fan x 4 44.5 x 406 x 443 mm

FAN (WxDxH)

2 lines of 16Characters display 84 x 432 x 535mm [2U]

4 LX (4)

LX Series Users Guide

- 22 -

PNOS 4.5

3.3. LX Series A. LX 9424 Gigabit Interface (UTP) 10G Interface

Power Switch

Status LCD Console Port MGMT USB

Gigabit Interface (SFP/UTP Combo)

5 LX 9424 () . Status LCD Console Port USB MGMT 10G Interface . PC . USB . . 10G Fiber Optic 4 10G Ethernet ( 10G Interface 10G 10G .) Gigabit Interface (UTP) Gigabit Interface (SFP/UTP Combo) Power Switch PNOS 4.5 Twisted Pair Fiber Optic 8 Giga Ethernet ( Combo UTP SFP .) . - 23 Twisted Pair 12 Giga Ethernet

LX Series Users Guide

HDD Module

Power Fan

System Fan

Dual Power Connector

Buzz Switch

6 LX 9424 ()

. System Fan Power Fan HDD Module Dual Power Connector Buzz Switch Fan. Power Fan. . . . .

B. LX 4020

LX Series Users Guide

- 24 -

PNOS 4.5

Gigabit Interface (UTP) Gigabit Interface (SFP/UTP Combo)

Status LCD

Port Status LED

LCD Buttons

Console Port MGMT USB 7 LX 4020 ()

Reset Switch

. Status LCD LCD Buttons Console Port USB MGMT Port Status LED CPU LCD. LCD . PC . USB . . . Gigabit Interface (UTP) Gigabit Interface (SFP/UTP Combo) Reset Switch Twisted Pair Fiber Optic 8 Giga Ethernet ( Combo UTP SFP .) . : . : , Giga .

Twisted Pair 12 Giga Ethernet

PNOS 4.5

- 25 -

LX Series Users Guide

System Fan

Buzz Switch

Dual Power Connector

Power Switch

Power Fan

8 LX 4020 ()

. System Fan Power Fan Power Switch Dual Power Connector Buzz Switch Fan. Power Fan. . . . .

LX Series Users Guide

- 26 -

PNOS 4.5

C. LX 4008 Gigabit Interface (SFP/UTP Combo)

Status LCD

Port Status LED

LCD Buttons

Console Port MGMT USB 9 LX 4008 ()

Reset Switch

. Status LCD LCD Button Console Port USB MGMT Port Status LED CPU LCD. LCD . PC . USB . . . : . : , Giga . Gigabit Interface (SFP/UTP Combo) Reset Switch Twisted Pair Fiber Optic 8 Giga Ethernet ( Combo UTP SFP .) .

PNOS 4.5

- 27 -

LX Series Users Guide

System Fan

Buzz Switch

Dual Power Connector

Power Switch

Power Fan

10 LX 4008 ()

. System Fan Power Fan Power Switch Dual Power Connector Buzz Switch Fan. Power Fan. . . . .

LX Series Users Guide

- 28 -

PNOS 4.5

D. LX 2510

LCD Buttons

Gigabit Interface (Copper)

Gigabit Interface (SFP)

Status LCD

USB Console Port 11 LX 2510 ()

. Console Port USB Port 10/100/1000T Ethernet Ports PC . USB . Twisted Pair Giga Ethernet LED . Gigabit Ports (SFP) Status LCD LCD Buttons : , Giga . : .

SFP Fiber Optic Gigabit CPU LCD. LCD .

PNOS 4.5

- 29 -

LX Series Users Guide

System Fan

Power Supply

Power Switch 12 LX 2510 ()

. System Fan Power Supply Power Switch Fan. . ON/OFF.

LX Series Users Guide

- 30 -

PNOS 4.5

F.

13

14

PNOS 4.5

- 31 -

LX Series Users Guide

Chapter2. LX SLB

LX Series Users Guide

- 32 -

PNOS 4.5

1. (Virtual Server) . L4 (Frontend) . . Virtual Server . IP . IP VIP (Virutal IP) . IP Service IP . L4 (Backend) RS (Real Server) . (Clustering) .

15 (Virtual Server)

PNOS 4.5

- 33 -

LX Series Users Guide

2. (Routing)2.1. DSR (Direct Server Return)DSR L4 RS(Real Server) , RS L4 . RS IP Real Server IP VIP RS L4 (SLB) VIP . DSR L4 . , FTP .

16 DSR (Direct Server Return)

LX Series Users Guide

- 34 -

PNOS 4.5

2.2. NAT (Network Address Translation)NAT L4 VIP RS IP RS , RS L4 RS IP VIP . Half NAT . NAT L4 RS L4 . RS RS Default Gateway L4 , L4 . NAT L4 DSR , L4 RS .

17 NAT (Network Address Translation)

PNOS 4.5

- 35 -

LX Series Users Guide

2.3. FNAT (Full Network Address Translation)Full NAT RS L4 NAT . NAT RS L4 RS L4 . Full NAT . Full NAT , RS . NAT RS Default Gateway . NAT DSR RS , .

18 FNAT (Full Network Address Translation)

LX Series Users Guide

- 36 -

PNOS 4.5

3. (Scheduling)3.1. (Round Robin)RS (Session) , . RS RS . RS RS . Weighted Round Robin .

19 (Round Robin)

PNOS 4.5

- 37 -

LX Series Users Guide

3.2. (Least Connection)RS RS . RS , , RS . RS RS RS . Weighted Least Connection .

20 (Least Connection)

LX Series Users Guide

- 38 -

PNOS 4.5

3.3. (Hashing) IP RS RS . IP RS . , RS .

21 (Hashing)

PNOS 4.5

- 39 -

LX Series Users Guide

4. (Session Persistence) . IP, , End-to-End (Connection) . . . (Session) . . . IP, . (Session Persistence) . IP, . . TCP TCP (SYN,FIN ) , UDP . . (Session Persistence Time) . , . , . . L4 TCP , L7 HTTP cookie, HTTPS, FTP . L4 . . L4 . L4 . L4 . L4 IP Session Persistent . IP Persistence .

LX Series Users Guide

- 40 -

PNOS 4.5

5. (Server Health Check)RS RS . RS Down , , . RS RS . Server Health Check . Server Health Check RS RS Down . RS RS .

RS . Health Check . Server Health Check .

A. L3 Check (ICMP) : ICMP Ping Request RS IP ICMP Ping Response RS IP Network Layer B. L4 Check (Port) : TCP 3-way Handshake Port Listen Transport Layer C. L7 Check (HTTP, SMTP, FTP, etc.) : RS Connection Request String Response String

PNOS 4.5

- 41 -

LX Series Users Guide

6. (High Availability) , L4 . L4 L4 L4 . Active-Standby Active-Active . , L4 RFC VRRP(Virtual Router Redundancy Protocol) .

6.1. VRRP (Virtual Router Redundancy Protocol)VRRP RFC 2338 , , , FAILOVER . PRIMARY STANDBY .

A. . B. . C. , .

LX Series Users Guide

- 42 -

PNOS 4.5

6.2. Active-Standby Primary Active , Standby Standby . Standby Primary Down Active . Down Primary Up Active Standby Standby , Primary Active .

22 ACTIVE-STANDBY

PNOS 4.5

- 43 -

LX Series Users Guide

DOWN

23 ACTIVE-STANDBY Primary L4 Down

LX Series Users Guide

- 44 -

PNOS 4.5

6.3. Active-Active Active . L4 . .

24 ACTIVE-ACTIVE

PNOS 4.5

- 45 -

LX Series Users Guide

7. (Session Mirroring) Primary Down Standby Active . Primary Standby . Primary Standby . Session Mirroring . Active Standby . Standby . Active Down Standby Active . Primary Up Active , Standby Active .

25 Session Mirroring

LX Series Users Guide

- 46 -

PNOS 4.5

8. Default Gateway L4 Default Gateway L4 (Hop) . L4 Default Gateway Router L4 . Default Gateway SPOF (Single Point of Failure) . Default Gateway . Default Gateway , L4 Default Gateway Health Check . Health Check Default Gateway , Default Gateway . , Default Gateway Active Default Gateway WAN . Default Gateway Health Check ICMP request, reply . Gateway L4 ICMP request .

26 Default Gateway

PNOS 4.5

- 47 -

LX Series Users Guide

9. VLAN9.1. VLAN (Virtual LAN) VLAN IEEE802.1Q . LAN . VLAN . VLAN ID . , Collision Domain .

A. . B. . C. . VLAN . D. VLAN . E. VLAN VLAN . F. VLAN VLAN .

LX Series Users Guide

- 48 -

PNOS 4.5

VLAN , . 2 VLAN 2 , VLAN 2 , ARP Broadcast .

27 VLAN

PNOS 4.5

- 49 -

LX Series Users Guide

9.2. VLAN A. VLAN B. MAC VLAN C. Subnet VLAN D. Multicast VLAN

LX L4 Switch VLAN . VLAN VLAN .

9.3. Tag / Untag VLAN . Tag VLAN tag , Untag VLAN tag . VLAN Tag , VLAN Untag .

9.4. PVID (Port VLAN ID) VLAN ID . L4 VLAN . , VLAN tag VLAN , VLAN tag L4 VLAN tag . VLAN ID PVID .

9.5. VLAN L4 VLAN ID VLAN . VLAN ID VLAN ID . VLAN .

LX Series Users Guide

- 50 -

PNOS 4.5

Chapter3. LX FWLB/VPNLB

PNOS 4.5

- 51 -

LX Series Users Guide

1. (Firewall Load Balancing, FWLB) . . . . Transparent Mode Bridge Mode . . Gateway Mode . Bridge Mode . Gateway Mode . . (Firewall Load Balancing) , Firewall Load Balancer . Firewall Load Balancer .

28 (Firewall Load Balancing)

LX Series Users Guide

- 52 -

PNOS 4.5

2. VPN (VPN Load Balancing, VPNLB) (Virtual Private Network, VPN) . VPN (Tunneling) . , . (Encapsulation) . , (Tunnel) VPN . VPN , . VPN . VPN . Transparent Mode Bridge Mode . VPN . Gateway Mode . VPN VPN . VPN (VPN Load Balancing) , VPN Load Balancer . VPN VPN VPN Load Balancer VPN .

29 VPN (VPN Load Balancing) PNOS 4.5 - 53 -

LX Series Users Guide

3. +VPN (FW+VPN Load Balancing) VPN +VPN . VPN . , VPN . +VPN (FW+VPN Load Balancing) . FW+VPN Load Balancer . +VPN +VPN FW+VPN Load Balancer +VPN .

30 +VPN (FW+VPN Load Balancing)

LX Series Users Guide

- 54 -

PNOS 4.5

4. DMZ DMZ IP . DMZ IP DMZ . L4 DMZ L4 . DMZ L4 Internal L4 Internal L4 . DMZ , SLB (Server Load Balancing) .

31 DMZ DMZ L4

PNOS 4.5

- 55 -

LX Series Users Guide

5. (Routing)5.1. DSR (Direct Server Return)DSR L4 , L4 . L4 .

32 DSR (Direct Server Return)

LX Series Users Guide

- 56 -

PNOS 4.5

5.2. NAT (Network Address Translation)NAT L4 VIP IP , L4 IP VIP . NAT L4 L4 . Default Gateway L4 , L4 .

33 NAT (Network Address Translation)

PNOS 4.5

- 57 -

LX Series Users Guide

6. (Scheduling)6.1. (Round Robin) (Session) , . . . Weighted Round Robin .

34 (Round Robin)

LX Series Users Guide

- 58 -

PNOS 4.5

6.2. (Least Connection) . , , . . Weighted Least Connection .

35 (Least Connection)

PNOS 4.5

- 59 -

LX Series Users Guide

6.3. (Hashing) IP . IP . , .

36 (Hashing)

LX Series Users Guide

- 60 -

PNOS 4.5

7. (Session Persistence) . IP, , End-to-End (Connection) . . . (Session) . . . IP, . (Session Persistence) . IP, . . TCP TCP (SYN,FIN ) , UDP . . (Session Persistence Time) . , . , . . L4 TCP , L7 HTTP cookie, HTTPS, FTP . L4 . . L4 . L4 . L4 . L4 IP Session Persistent . IP Persistence .

PNOS 4.5

- 61 -

LX Series Users Guide

8. (Firewall Health Check) . Down , , . . Health Check . Health Check Down . . . External L4 , Internal L4 , , . L4 , Health Check External L4 Internal L4 . Health Check ICMP Reply ICMP request . ICMP request L4 . ICMP request . External L4 Internal L4 ICMP request . DMZ DMZ L4 Health Check . ICMP request .

EXTERNAL L4 -> INTERNAL L4 1 EXTERNAL L4 -> DMZ L4 2 INTERNAL L4 -> EXTERNAL L4 3 INTERNAL L4 -> DMZ L4 4 DMZ L4 -> EXTERNAL L4 5 DMZ L4 -> INTERNAL L4 6

LX Series Users Guide

- 62 -

PNOS 4.5

37 Health Check

PNOS 4.5

- 63 -

LX Series Users Guide

9. (High Availability) , L4 . L4 L4 L4 . Active-Standby Active-Active . , L4 RFC VRRP(Virtual Router Redundancy Protocol) .

9.1. VRRP (Virtual Router Redundancy Protocol)VRRP RFC 2338 , , , FAILOVER . PRIMARY STANDBY .

A. . B. . C. , .

LX Series Users Guide

- 64 -

PNOS 4.5

9.2. Active-Standby Primary Active , Standby Standby . Standby Primary Down Active . Down Primary Up Active Standby Standby , Primary Active .

38 ACTIVE-STANDBY

PNOS 4.5

- 65 -

LX Series Users Guide

DOWN

39 ACTIVE-STANDBY External Primary L4 Down

LX Series Users Guide

- 66 -

PNOS 4.5

9.3. Active-Active Active . L4 . .

40 ACTIVE-ACTIVE

PNOS 4.5

- 67 -

LX Series Users Guide

10. (Session Mirroring) Primary Down Standby Active . Primary Standby . Primary Standby . Session Mirroring . Active Standby . Standby . Active Down Standby Active . Primary Up Active , Standby Active .

41 Session Mirroring

LX Series Users Guide

- 68 -

PNOS 4.5

11. Default Gateway L4 Default Gateway L4 (Hop) . L4 Default Gateway Router L4 . Default Gateway SPOF (Single Point of Failure) . Default Gateway . Default Gateway , L4 Default Gateway Health Check . Health Check Default Gateway , Default Gateway . , Default Gateway Active Default Gateway WAN . Default Gateway Health Check ICMP request, reply . Gateway L4 ICMP request .

42 Default Gateway

PNOS 4.5

- 69 -

LX Series Users Guide

12. External + Internal FWLB/VPNLB L4 External L4 Internal L4 . Pumpkin Networks FWLB/VPNLB L4 L4 H/A (High Availability) .

43 External + Internal FWLB/VPNLB

LX Series Users Guide

- 70 -

PNOS 4.5

44 External + Internal FWLB/VPNLB

PNOS 4.5

- 71 -

LX Series Users Guide

Chapter4. LX Series

LX Series Users Guide

- 72 -

PNOS 4.5

1. CLI (Command Line Interface) 1.1. (Console) . LAN . LAN . PC . .

A. [] . B. [ ] . : COMx ( PC ) C. [ ] . / : 115200, : 8, : , : 1, : D. .

45

PNOS 4.5

- 73 -

LX Series Users Guide

1.2. ON . Login ID root . . . 1.9 . CLI (Command Line Interface) .

46 CLI (1)

LX Series Users Guide

- 74 -

PNOS 4.5

. conf System Log info Clear rollback apply exit , , BE , Service, file, , firmware , SNMP , LB , , VLAN (Global ) Apply (Global ) (Global ) CLI (Global )

PNOS 4.5

- 75 -

LX Series Users Guide

1.3. CLI A. CLI .

B. .. . . .

C. Full Path . ) [root@LX-4020] /conf/net

D. (Entry) add ID . ID .

E. ? . ) [root@LX-4020] server # add ?

LX Series Users Guide

- 76 -

PNOS 4.5

F. Global Global .

47 CLI (2)

. ? date clear rollback apply exit reboot shutdown dump log ping tcpdump PNOS 4.5 . .. . apply . . CLI . . . configuration ICMP . . - 77

LX Series Users Guide

arping resolveip tracert darp telnet port ver arp if route mem cpu cpumeter . .. / pwd

ARP . domain name IP . Routing Path . ARP cache . . . ARP cache . . . . CPU . CPU . . . . .

*** CLI CLI Command Reference .

LX Series Users Guide

- 78 -

PNOS 4.5

1.4. IP IP LAN . Telnet CLI Web Browser Web UI .

A. IP .

[root@LX2008] Root # conf -----------------------------------------------------------[Configuration Menu] lb filter port net gateway dns : [Load Balancing Configuration Menu] : [Filter Configuration Menu] : [Port Configuration Menu] : [Network Interface Configuration Menu] : [Default Gateway Configuration Menu] : [DNS Configuration Menu]

[root@LX2008] conf # net -----------------------------------------------------------[Network Interface Configuration Menu] [Network Interface Entry Configuration Menu] 1 2 3 4 5 6 7 8 , , , , , , , , PORT1 PORT2 PORT3 PORT4 PORT5 PORT6 PORT7 PORT8

[root@LX2008] net # /conf/net/ . PNOS 4.5 - 79 -

LX Series Users Guide

B. IP . PORT1 192.168.0.10 IP .

[root@LX2008] net # 1 -----------------------------------------------------------[Network Interface Entry Configuration Menu] ip route arp arpproxy : [IP Configuration Menu] : [Static Routing Configuration Menu] : [Static ARP Configuration Menu] : [ARP Proxy Configuration Menu]

[root@LX2008] PORT1 # ip -----------------------------------------------------------[IP Configuration Menu] add del p : Add an IP address entry : Delete an IP address entry : Show configurations of all IP address entries

[root@LX2008] PORT1 - ip # add 192.168.0.10 -----------------------------------------------------------[IP Configuration Menu] [IP Entry Configuration Menu] 1 add del p , 192.168.0.10 : Add an IP address entry : Delete an IP address entry : Show configurations of all IP address entries

[root@LX2008] PORT1 - ip #

LX Series Users Guide

- 80 -

PNOS 4.5

C. p . IP Subnet Mask 255.255.255.0 . [root@LX2008] PORT1 - ip # p Entry ID IP address 1 192.168.0.10 Subnet mask 255.255.255.0 Bcast address 192.168.0.255 Status ENABLE

D. IP IP . IP . [root@LX2008] PORT1 - ip # 1 -----------------------------------------------------------[IP Entry Configuration Menu] ip subnet broad ena dis p : Set IP address : Set Subnet mask : Set broadcasting IP address : Enable IP address entry : Disable IP address entry : Show configurations of IP address entry

[root@LX2008] PORT1 - ip 192.168.0.10 # p Entry ID IP address Subnet mask : 1 : 192.168.0.10 : 255.255.255.0

Broadcast address : 192.168.0.255 Status : ENABLE

[root@LX2008] PORT1 - ip 192.168.0.10 # *** CLI .

PNOS 4.5

- 81 -

LX Series Users Guide

1.5. . apply . . apply save .

[root@LX2008] PORT1 - ip # apply save Check the validity of configurations. Set IP address 192.168.0.10 to Interface PORT1 Save applied configurations: Enable Now saving applied configurations. Saving applied configurations is done.

[root@LX2008] PORT1 - ip #

LX Series Users Guide

- 82 -

PNOS 4.5

1.6. , . .

A. dump . dump Global . . [root@LX2008] Root # dump /conf/port/PORT1/nego on /conf/port/PORT1/spd 100 /conf/port/PORT1/dup full /conf/port/PORT1/ena : : : /conf/net/PORT1/ip/add 192.168.0.10 /conf/net/PORT1/ip/192.168.0.10/subnet 255.255.255.0 /conf/net/PORT1/ip/192.168.0.10/broad 192.168.0.255 /conf/net/PORT1/ip/192.168.0.10/ena /conf/dns/hostname LX2008 /system/snmp/dis /system/alert/email/server 0.0.0.0

[root@LX2008] Root # CLI . dump CLI . dump PC CLI .

PNOS 4.5

- 83 -

LX Series Users Guide

B. .

[root@LX2008] Root # /system/file -----------------------------------------------------------[Configuration File Menu] save load delete show p : Save current configurations to save file : Load configurations from save file : Delete save file : Show command list of save file : Show list of save files

[root@LX2008] file # C. save . manual . p [root@LX2008] file # save manual

[root@LX2008] file # p File name manual Date Dec 10 17:23

[root@LX2008] file #

LX Series Users Guide

- 84 -

PNOS 4.5

1.7. .

A. . [root@LX2008] Root # /system/file -----------------------------------------------------------[Configuration File Menu] save load delete show p : Save current configurations to save file : Load configurations from save file : Delete save file : Show command list of save file : Show list of save files

[root@LX2008] file # p File name manual Date Dec 10 17:23

[root@LX2008] file #

PNOS 4.5

- 85 -

LX Series Users Guide

B. show . manual . [root@LX2008] file # show manual /conf/port/PORT1/nego on /conf/port/PORT1/spd 100 /conf/port/PORT1/dup full /conf/port/PORT1/ena : : /conf/net/PORT1/ip/add 192.168.0.10 /conf/net/PORT1/ip/192.168.0.10/subnet 255.255.255.0 /conf/net/PORT1/ip/192.168.0.10/broad 192.168.0.255 /conf/net/PORT1/ip/192.168.0.10/ena /conf/dns/hostname LX2008 /sytem/snmp/dis /system/alert/email/server 0.0.0.0

[root@LX2008] file #

LX Series Users Guide

- 86 -

PNOS 4.5

C. load . manual . dump .

[root@LX2008] file # load manual Loading configuration file successfully.

[root@LX2008] file # dump /conf/port/PORT1/nego on /conf/port/PORT1/spd 100 /conf/port/PORT1/dup full /conf/port/PORT1/ena : : /conf/net/PORT1/ip/add 192.168.0.10 /conf/net/PORT1/ip/192.168.0.10/subnet 255.255.255.0 /conf/net/PORT1/ip/192.168.0.10/broad 192.168.0.255 /conf/net/PORT1/ip/192.168.0.10/ena /conf/dns/hostname LX2008 /system/snmp/dis /system/alert/email/server 0.0.0.0

[root@LX2008] file #

PNOS 4.5

- 87 -

LX Series Users Guide

1.8. UI . apply . reset . apply .

[root@LX2008] Root # reset

reset . reset apply IP . LAN . IP . reset reset IP apply .

LX Series Users Guide

- 88 -

PNOS 4.5

1.9. . CLI Web UI . apply . .

A. . [root@LX2008] Root # /system/user -----------------------------------------------------------[User Account Configuration Menu] [User Account Entry Configuration Menu] 1 add del p , root : Add an user account : Delete an user account : Show configurations of all user accounts

[root@LX2008] user # p Entry ID User ID 1 root Permission Status ADMIN ENABLE

[root@LX2008] user #

root . root . add, del .

. root , . .

PNOS 4.5

- 89 -

LX Series Users Guide

B. pw . root pumpkin . 8 .

[root@LX2008] user # root -----------------------------------------------------------[User Account Entry Configuration Menu] passwd pms ena dis p : Set password of user account : Set permission of user account : Enable user account : Disable user account : Show configurations of user account

[root@LX2008] user root # pw pumpkin

[root@LX2008] user root #

LX Series Users Guide

- 90 -

PNOS 4.5

C. add . test . . [root@LX2008] user # add test -----------------------------------------------------------[User Account Configuration Menu] [User Account Entry Configuration Menu] 1 2 add del p , , root test : Add an user account : Delete an user account : Show configurations of all user accounts

[root@LX2008] user # p Entry ID User ID 1 2 root test Permission Status ADMIN USER ENABLE ENABLE

[root@LX2008] user #

.

ADMIN : . USER : .

PNOS 4.5

- 91 -

LX Series Users Guide

D. pms . test ADMIN . [root@LX2008] user # 2 -----------------------------------------------------------[User Account Entry Configuration Menu] Passwd pms ena dis p : Set password of user account : Set permission of user account : Enable user account : Disable user account : Show configurations of user account

[root@LX2008] user test # pms admin

[root@LX2008] user test # p Entry ID User ID : 2 : test

Permission : ADMIN Status : ENABLE

[root@LX2008] user test #

LX Series Users Guide

- 92 -

PNOS 4.5

1.10. . . Global . CLI . apply .

A. date , . [root@LX2008] Root # date Thu May 15, 18:18:20, GMT+9, 2008

[root@LX2008] Root #

B. date , . 2004 12 10 5 38 . ,,,, . date . [root@LX2008] Root # date 121017382008 Friday December 10, 17:38:01, GMT+9, 2008

[root@LX2008] Root #

PNOS 4.5

- 93 -

LX Series Users Guide

1.11. CLI Command ReferenceCLI CLI Command Reference . CLI Command Reference CLI , .

LX Series Users Guide

- 94 -

PNOS 4.5

2. (Web) 2.1. IP LAN .

A. IP . IP 192.168.0.10 http://192.168.0.10:8888 .

48 B. . . ID : root, Password : pumpkin1 .

49 PNOS 4.5 - 95 -

LX Series Users Guide

C. . .

50

D. . .

51

LX Series Users Guide

- 96 -

PNOS 4.5

2.2.

52

. . A. (1) . (1) (http://www.pumpkinnet.co.kr) .

53

A. (2) .

54

PNOS 4.5

- 97 -

LX Series Users Guide

C. (3) Apply .

55 Apply

Apply

. Apply .

Logout

. .

LX Series Users Guide

- 98 -

PNOS 4.5

Apply Log > Apply Log .

56

D.

.

.

. .

PNOS 4.5

- 99 -

LX Series Users Guide

Network

57 Network

. Port(Port, Trunk, Mirroring), Interface(VLAN, VLAN Group, IP, Route, ARP, ARP Proxy), Default Gateway, DNS, QoS, Advanced(TCP MSS, Dynamic Route) .

LX Series Users Guide

- 100 -

PNOS 4.5

Load Balancing

58 Load Balancing

. Server, Service(Service, VIP, VRRP, Health Check), Advanced(DMZ, Manual Route, Exclusion IP) .

AFE

59 AFE

AFE . Server, Service(Service, VIP, VRRP, Health Check), Advanced(Compression, Cache, SSL, Error Page), Tool(SSL Certificate) .

PNOS 4.5

- 101 -

LX Series Users Guide

Surge Control

60 Surge Control

. Server Surge, Client Surge, HTTP Redirection (Redirection, Redirection Page), HTTP Logout . Security Pack

61 Security Pack

. Signature(DoS, WORM, Spyware, MISC), Policy, ACL(Manual, File), Advanced(Filter, Group), Live Update, Whois .

LX Series Users Guide

- 102 -

PNOS 4.5

Information

62 Information

. Network (Interface, Port, IP, Route, ARP, Default Gateway), / (Summary, Service, Server, Exclusion IP), AFE (Summary, Service, Server), Surge Control (Client Surge), (Pattern, Group, Policy, ACL, Advanced), (System, Interface, Access) .

PNOS 4.5

- 103 -

LX Series Users Guide

Monitoring

63 Monitoring

. Network, Load Balancing, Surge Control, Security Pack, System, Report .

Log

64 Log

. System Log, Boot Log, File System Check Log, Apply Log, Security Log, AFE Log .

LX Series Users Guide

- 104 -

PNOS 4.5

System Admin

65 System Admin

. , , , Syslog , SNMP , Email , , .

E.

. >

.

66

PNOS 4.5

- 105 -

LX Series Users Guide

F.

.

67

. .

(a) . .

68

LX Series Users Guide

- 106 -

PNOS 4.5

(b) , .

69 ,

List (x) Configuration

. . (x) . Ex) VLAN Configuration : VLAN . Ex) IP Configuration : IP .

IP Configuration IP . .

70

.

71

PNOS 4.5

- 107 -

LX Series Users Guide

Enable Disable Delete

. . .

. . ( .)

72 ()

/ .

73

74

Confirm

.

LX Series Users Guide

- 108 -

PNOS 4.5

confirm . / confirm .

. / . , . . IP .

75 IP

/ , . . Interface Name . Confirm .

PNOS 4.5

- 109 -

LX Series Users Guide

2.3. .

Port Network Interface Default gateway DNS Host Name Load Balancing Real Server Load Balancing Service (Service, Health Check ) Load Balancing Advanced (Exclusion IP, MAC Broadcast ) Apply Information, Monitoring 76

~

.

.

.

Auto

Negotiation ON/OFF, Link , Duplex , / . .

77

LX Series Users Guide

- 110 -

PNOS 4.5

. VLAN, IP, Route, ARP, ARP proxy . IP IP .

78 Interface

Default Gateway . Default Gateway Default Gateway Health Check .

79 Default Gateway

PNOS 4.5

- 111 -

LX Series Users Guide

DNS , Domain Name, Host Name . Host Name .

80 DNS, Domain Name, Host Name

~

Load Balancing .

Server . Real Server . Real Server .

81

LX Series Users Guide

- 112 -

PNOS 4.5

Service . IP, , , , , , , , .

Real Server .

, Health Check . VIP , VRRP(HA) .

82

Advanced . Exclusion IP, MAC Broadcast , . ( Firewall/VPN Load Balancing Advanced DMZ, Manual Route .)

83 Advanced

apply .

PNOS 4.5

- 113 -

LX Series Users Guide

. .

84

LX Series Users Guide

- 114 -

PNOS 4.5

3. Network . Port(Port, Trunk, Mirroring), Interface(VLAN, VLAN Group, IP, Static Route, Static ARP, ARP Proxy), Default Gateway, DNS, TCP MSS .

85

PNOS 4.5

- 115 -

LX Series Users Guide

3.1. Port Configuration , .

3.2.1. Port Configuration .

A. Port .

86 Port (Network > Port)

B. Port Port .

87 Port (Network > Port > Port)

LX Series Users Guide

- 116 -

PNOS 4.5

C. Port .

88 Port

. Port Name Auto Negotiation Auto Negotiation Speed ON : Auto Negotiation . OFF : Auto Negotiation .

(10/100/1000) Auto Negotiation ON Speed - .

Duplex

Duplex (Full/Half) Auto Negotiation ON Duplex - .

PNOS 4.5

- 117 -

LX Series Users Guide

Rate Limit rate limit

( LX4000 .) Ingress : Ingress rate limit . 64-1000000kbps . 64 . flow-control , flow-control . Egress : egress rate limit . 64-1000000kbps . 64 . Active UP/DOWN ( LX4000 .) Status ON : UP OFF: DOWN .

ENABLE : . DISABLE :

Sel

/

LX Series Users Guide

- 118 -

PNOS 4.5

D. Port Name .

89 Port

E. .

90 Port

PNOS 4.5

- 119 -

LX Series Users Guide

. Port Name Auto Negotiation Auto Negotiation Speed ON : Auto Negotiation . OFF : Auto Negotiation .

(10/100/1000) Auto Negotiation ON Speed - .

Duplex

Duplex (Full/Half) Auto Negotiation ON Duplex - .

Ingress Rate Limit

ingress rate limit ( LX4000 .) 64-1000000kbps .

flow-control , flowcontrol . 64 . Egress Rate Limit ingress rate limit ( LX4000 .) 64-1000000kbps . 64 . Active UP/DOWN ( LX4000 .) ON : UP OFF: DOWN .

LX Series Users Guide

- 120 -

PNOS 4.5

Status ENABLE : . DISABLE :

F. . Auto Negotiation OFF 100Mbps, Duplex Half Duplex ingress ratelimit 10000kbps, egress ratelimit 1000kbps, link active . Confirm .

91 Port

PNOS 4.5

- 121 -

LX Series Users Guide

G. Confirm . Ingress ratelimit egress ratelimit 64 .

92 Port

3.2.2. Trunk Configuration . ( LX4000 .) A. Port .

93 Port (Network > Port)

LX Series Users Guide

- 122 -

PNOS 4.5

B. Port Trunk .

Port (Network > Port > Trunk)

C. Trunk .

94 Trunk

PNOS 4.5

- 123 -

LX Series Users Guide

. Trunk Name Bind Port B . , VLAN . Status Sel ENABLE : . DISABLE :

/

D. Trunk Name .

95 Trunk

LX Series Users Guide

- 124 -

PNOS 4.5

E. .

96 Trunk

. Trunk Name Bind Port Status .

ENABLE : . DISABLE :

F. . Port 1, Port 2, Port 6 . Confirm .

97 Trunk

PNOS 4.5

- 125 -

LX Series Users Guide

G. Confirm .

98 Trunk

3.2.2. Mirroring Configuration . ( LX4000 .) A. Port .

99 Port (Network > Port)

LX Series Users Guide

- 126 -

PNOS 4.5

B. Port Mirroring .

100 Port (Network > Port > Mirroring)

C. Mirroring .

101 Mirroring

PNOS 4.5

- 127 -

LX Series Users Guide

. Target Port . B . Bind Port Egress egress , Ingress . B . Bind Port Ingress ingress , Egress . B . Status ENABLE : . DISABLE :

D. Mirroring Configuration .

102 Mirroring

LX Series Users Guide

- 128 -

PNOS 4.5

E. Mirroring Configuration .

103 Mirroring . Target Port . Bind Port Egress .

egress , Ingress .

Bind Port Ingress

ingress , Egress .

Status

ENABLE : . DISABLE :

PNOS 4.5

- 129 -

LX Series Users Guide

F. . Port 3 , Port 4, Port 5 egress , Port 15, Port 16 ingress . ingress, egress . Confirm .

104 Mirroring

G. Confirm .

105 Mirroring

LX Series Users Guide

- 130 -

PNOS 4.5

3.2. Interface Configuration (VLAN, VLAN group, IP, Route, ARP, ARP Proxy ) .

3.2.1. VLAN Configuration VLAN .

A. Interface .

106 Interface (Network > Interface)

B. Interface VLAN .

107 Interface (Network > Interface > VLAN) PNOS 4.5 - 131 -

LX Series Users Guide

C. VLAN Interface VLAN . VLAN .

108 VLAN

VLAN Name VLAN ID VLAN VLAN 1~4094 N/A : VLAN ID .( LX1008, LX2008, LX3007 ) Port List VLAN T : Tagged VLAN Port u : Untagged VLAN Port VLAN untagged VLAN untagged . , LX4000 VLAN , VLAN VLAN , LX1008, LX2008, LX3007 VLAN . VLAN Port Trunk .

LX Series Users Guide

- 132 -

PNOS 4.5

Trunk List

( LX4000 .) T : Tagged VLAN Trunk u : Untagged VLAN Trunk VLAN untagged VLAN untagged .

STP(Priority)

Spanning Tree ON : Spanning Tree . OFF : Spanning tree . STP STP Spanning Tree Root . 32768 , Root . STP Priority 0~61440 . 4096 .

QoS

QoS class . QoS class , Default QoS class . ( LX4000 .)

Boundary

VLAN . SLB Client/Server Boundary , FW/VPNLB Boundary . Boundary .

Promisc

Promiscuous / . ON : . MAC Address

PNOS 4.5

- 133 -

LX Series Users Guide

. OFF : . MAC Address Broadcast . Status VLAN / ENABLE : . DISABLE : . LX4000 DEFAULT VLAN . Sel VLAN // .

LX Series Users Guide

- 134 -

PNOS 4.5

D. VLAN VLAN Configuration .

109 VLAN

E. VLAN Configuration VLAN .

110 VLAN

PNOS 4.5

- 135 -

LX Series Users Guide

. VLAN Name VLAN ID VLAN VLAN 1~4094 N/A : VLAN ID . (LX1008, LX2008, LX3007 ) Tagged Port Tagged Trunk Untagged VLAN Port Untagged VLAN Trunk STP VLAN VLAN VLAN VLAN VLAN VLAN VLAN VLAN Spanning Tree STP Priority QoS ON : Spanning Tree . OFF : Spanning tree .

Spanning Tree Priority . QoS class . ( LX4000 .)

Status

VLAN / ENABLE : . DISABLE : . LX4000 DEFAULT VLAN .

LX Series Users Guide

- 136 -

PNOS 4.5

F. VLAN . Interface Name V1, VLAN ID 2, Tagged VLAN Port Port 6, Port 7, Tagged VLAN Trunk Trunk 1, Untagged VLAN Port Port 9, Port 10, STP on, STP Priority 20000 . , Confirm .

111 VLAN ,

G. Confirm VLAN VLAN . STP Priority 4096 .

PNOS 4.5

- 137 -

LX Series Users Guide

112 VLAN

H. VLAN untagged VLAN untagged . DEFAULT VLAN . VLAN VLAN Name .

113 VLAN I. .

114 VLAN

LX Series Users Guide

- 138 -

PNOS 4.5

J. VLAN . VLAN Name VLAN ID . untagged VLAN Port 9, Port 10 . Confirm .

115 VLAN ,

K. Confirm VLAN VLAN .

116 VLAN

PNOS 4.5

- 139 -

LX Series Users Guide

3.2.2. VLAN group Configuration VLAN . ( LX4000 .)

A. Interface .

117 Interface (Network > Interface)

B. Interface VLAN Group .

118 Interface (Network > Interface > VLAN Group)

LX Series Users Guide

- 140 -

PNOS 4.5

C. VLAN Group Interface VLAN Group . VLAN Group .

119 VLAN Group

VLAN Group Name Bind VLAN List VLAN Group VLAN Group VLAN VLAN Group VLAN VLAN Group . DEFAULT VLAN VLAN Group . VLAN Group VLAN . STP Spanning Tree STP Priority ON : Spanning Tree . OFF : Spanning tree .

Spanning Tree Priority . 0~61440 . 4096 .

PNOS 4.5

- 141 -

LX Series Users Guide

Status

VLAN Group / ENABLE : . DISABLE : .

D. VLAN Group VLAN Group Configuration .

120 VLAN Group

E. VLAN Group Configuration VLAN Group .

121 VLAN Group

LX Series Users Guide

- 142 -

PNOS 4.5

. VLAN Group Name Bind VLAN STP VLAN Group VLAN Group VLAN Spanning Tree STP Priority ON : Spanning Tree . OFF : Spanning tree .

Spanning Tree Priority . 0-61440 . 4096 .

Status

VLAN Group / ENABLE : . DISABLE : .

F. VLAN Group . VLAN Group Name vg1, Bind VLAN V1, V3, STP on, STP Priority 15000 . , Confirm .

122 VLAN Group ,

PNOS 4.5

- 143 -

LX Series Users Guide

G. Confirm VLAN Group VLAN Group . STP Priority 4096 .

123 VLAN Group

H. VLAN Grooup VLAN Group Name .

124 VLAN Group

I. .

125 VLAN Group

LX Series Users Guide

- 144 -

PNOS 4.5

J. VLAN Group . VLAN Group Name . V3 , V2 . Confirm .

126 VLAN Group ,

K. Confirm VLAN Group VLAN Group .

127 VLAN Group

PNOS 4.5

- 145 -

LX Series Users Guide

3.2.3. IP Configuration IP . IP IP .

A. Interface .

128 Interface (Network > Interface)

B. Interface IP .

129 Interface (Network > Interface > IP)

LX Series Users Guide

- 146 -

PNOS 4.5

C. IP Interface IP . IP .

130 IP

Interface Name Interface Type . ( LX4000 .) IP Address VLAN : VLAN VLAN Group : VLAN Group

IP LX4000 VLAN Group , VLAN IP .

Subnet Mask Broadcast IP Status

IP IP IP IP / ENABLE : . DISABLE :

Sel

IP //

PNOS 4.5

- 147 -

LX Series Users Guide

D. Interface IP IP Configuration .

131 IP

E. IP Configuration IP .

132 IP

. Interface Name IP Address Subnet Mask Broadcast IP Status IP IP IP IP IP Address / ENABLE : . DISABLE : - 148 PNOS 4.5

LX Series Users Guide

F. IP . IP Subnet Mask, Broadcast . IP , Subnet Mask Subnet Mask 255.255.255.0 , Broadcast IP Subnet Mask Broadcast . Confirm .

133 IP ,

G. Confirm Interface IP .

134 IP

PNOS 4.5

- 149 -

LX Series Users Guide

H. Interface IP . IP IP .

135 IP

I. . IP .

136 IP

LX Series Users Guide

- 150 -

PNOS 4.5

J. IP . IP, Subnet Mask, Broadcast , / . Subnet Mask 255.255.0.0 Broadcast 10.10.255.255 . Confirm .

137 IP ,

K. Confirm Interface IP Subnet Mask Broadcast IP .

138 IP

PNOS 4.5

- 151 -

LX Series Users Guide

3.2.4. Route Configuration (Static Routing) .

A. Network Interface .

139 Interface (Network > Interface)

B. Interface Route .

140 Interface (Network > Interface > Route)

LX Series Users Guide

- 152 -

PNOS 4.5

C. Route Route . . .

141 Route

. Interface Name Interface Type . ( LX4000 .) Destination IP VLAN : VLAN VLAN Group : VLAN Group

IP LX4000 VLAN Group , VLAN .

Subnet Mask Gateway IP Status

IP IP / ENABLE : . DISABLE :

Sel

//

PNOS 4.5

- 153 -

LX Series Users Guide

D. Route Configuration .

142 Route

E. Route Configuration .

143 Route

. Interface Name Destination IP Subnet Mask Gateway IP Status IP IP IP / ENABLE : . DISABLE :

LX Series Users Guide

- 154 -

PNOS 4.5

F. . Destination IP 172.16.10.1, Subnet Mask 255.255.255.0, Gateway IP 172.16.10.254 . Confirm .

144 Route

G. Confirm .

145 Route

PNOS 4.5

- 155 -

LX Series Users Guide

H. , Destination IP .

146 Route

I. . Interface Name .

147 Route

LX Series Users Guide

- 156 -

PNOS 4.5

J.

.

Host

Subnet

255.255.255.255 , Gateway IP 0.0.0.0 . Confirm .

148 Route

K. Confirm .

149 Route

PNOS 4.5

- 157 -

LX Series Users Guide

3.2.4. ARP Configuration ARP(Static ARP) .

A. Network Interface .

150 Interface (Network > Interface)

B. Interface ARP .

151 Interface (Network > Interface > ARP)

LX Series Users Guide

- 158 -

PNOS 4.5

C. ARP ARP . ARP . ARP ARP .

152 ARP

. Interface Name Interface Type . ( LX4000 .) ARP Address VLAN : VLAN VLAN Group : VLAN Group

ARP IP LX4000 VLAN Group , VLAN ARP .

ARP MAC Address Status

IP MAC ARP / ENABLE : . DISABLE :

Sel

ARP //

PNOS 4.5

- 159 -

LX Series Users Guide

D. ARP Configuration ARP .

153 ARP

E. ARP Configuration ARP . ARP ARP .

154 ARP

. Interface Name ARP Address ARP MAC Address Status ARP IP IP MAC ARP / ENABLE : . DISABLE :

LX Series Users Guide

- 160 -

PNOS 4.5

F. ARP . 10.10.5.1 ARP . Confirm .

155 ARP

G. Confirm ARP .

156 ARP

PNOS 4.5

- 161 -

LX Series Users Guide

H. ARP ARP Address .

157 ARP

I. . Interface Name .

158 ARP

LX Series Users Guide

- 162 -

PNOS 4.5

J. . MAC Address . Confirm .

159 ARP

K. Confirm .

160 ARP

PNOS 4.5

- 163 -

LX Series Users Guide

3.2.5. ARP Proxy Configuration ARP Proxy . ARP Proxy IP ARP .

A. Network Interface .

161 Interface (Network > Interface)

B. Interface ARP Proxy .

162 Interface (Network > Interface > ARP Proxy)

LX Series Users Guide

- 164 -

PNOS 4.5

C. ARP Proxy ARP Proxy . ARP Proxy . ARP Proxy ARP Proxy .

163 ARP Proxy

. Interface Name Interface Type . ( LX4000 .) IP Address Subnet Mask Status VLAN : VLAN VLAN Group : VLAN Group

ARP Proxy Subnet IP ARP Proxy Subnet ARP Proxy / ENABLE : . DISABLE :

Sel

ARP Proxy //

PNOS 4.5

- 165 -

LX Series Users Guide

D. ARP Proxy Configuration ARP Proxy .

164 ARP Proxy

E. ARP Proxy Configuration ARP Proxy . ARP Proxy ARP Proxy .

165 ARP Proxy

. Interface Name IP Address Subnet Mask Status ARP Proxy Subnet IP ARP Proxy Subnet ARP / ENABLE : . DISABLE : - 166 PNOS 4.5

LX Series Users Guide

F. ARP Proxy . 10.10.1.0/255.255.255.0 ARP . Confirm .

166 ARP Proxy

G. Confirm ARP Proxy .

167 ARP Proxy

PNOS 4.5

- 167 -

LX Series Users Guide

H. ARP Proxy ARP Proxy IP .

168 ARP Proxy

I. . Interface Name .

169 ARP Proxy

LX Series Users Guide

- 168 -

PNOS 4.5

J. . IP Subnet Mask 10.10.0.0, 255.255.0.0 . Confirm .

170 ARP Proxy

K. Confirm .

171 ARP Proxy

PNOS 4.5

- 169 -

LX Series Users Guide

3.3. Default Gateway Configuration (Default Gateway) . Health Check(ICMP) . .

A. Network Default Gateway .

172 Default Gateway (Network > Default Gateway)

B. Default Gateway .

173 Default Gateway

LX Series Users Guide

- 170 -

PNOS 4.5

IP Address Health Check Status IP Health Check / Interval Retry Role ON : Health Check . OFF : Health Check

Health Check () Health Check ACTIVE : STANDBY : ACTIVE ,

Interface

AUTO :

Status

/ ENABLE : . DISABLE :

Sel

//

C. Default Gateway Configuration .

174 Default Gateway

PNOS 4.5

- 171 -

LX Series Users Guide

D. Default Gateway Configuration .

175 Default Gateway

. Default Gateway IP Health Check Status IP Health Check / Health Check Interval Health Check Retry Role ON : . OFF :

Health Check () Health Check ACTIVE : STANDBY : ACTIVE ,

Interface

AUTO :

Status

/ ENABLE : . DISABLE :

LX Series Users Guide

- 172 -

PNOS 4.5

E. . 172.16.10.230 . Confirm .

176 Default Gateway

F. Confirm .

177 Default Gateway

G. Default Gateway IP .

178 Default Gateway PNOS 4.5 - 173 -

LX Series Users Guide

H. .

179 Default Gateway

I. . Default Gateway IP 172.124.0.132 . Confirm .

180 Default Gateway

J. Confirm .

181 Default Gateway

LX Series Users Guide

- 174 -

PNOS 4.5

3.4. DNS Configuration IP DNS . 3 DNS . , .

A. Network DNS .

182 DNS (Network > DNS)

B. DNS . DNS, , .

183 DNS

PNOS 4.5

- 175 -

LX Series Users Guide

. Primary DNS Secondary DNS Tertiary DNS Domain Name Host Name DNS IP DNS IP DNS IP

C. DNS DNS Configuration .

184 DNS

D. DNS Configuration DNS .

185 DNS

LX Series Users Guide

- 176 -

PNOS 4.5

. Primary DNS Secondary DNS Tertiary DNS Domain Name Host Name DNS IP DNS IP DNS IP

E. DNS . DNS DNS , . Confirm .

186 DNS

F. Confirm DNS .

187 DNS PNOS 4.5 - 177 -

LX Series Users Guide

3.5. QoS Configuration QoS . QoS VLAN interface, Server, Service, ACL, Policy . QoS DEFAULT QoS . ( LX4000 .)

A. Network DNS .

188 QoS (Network > QoS)

B. QoS . QoS .

189 QoS

LX Series Users Guide

- 178 -

PNOS 4.5

. Class Name Max Bandwidth QoS 1-1000Mbyte , 0 unlimited . Min Bandwidth Min Bandwidth .

1-1000Mbyte , 0 unlimited . Max Bandwidth .

Status

QoS / ENABLE : . DISABLE :

Sel

QoS // DEFAULT QoS / .

C. QoS QoS Configuration .

190 QoS

PNOS 4.5

- 179 -

LX Series Users Guide

D. QoS Configuration QoS .

191 QoS

. Class Name Max Bandwidth QoS 1-1000Mbyte , 0 unlimited . Min Bandwidth Min Bandwidth .

1-1000Mbyte , 0 unlimited . Max Bandwidth .

Status

QoS / ENABLE : . DISABLE : DEFAULT QoS .

LX Series Users Guide

- 180 -

PNOS 4.5

E. QoS . q1 QoS , Max Bandwidth 1000, Min Bandwidth 100 . Confirm .

192 QoS ,

F. Confirm QoS .

193 QoS

H. QoS Class Name .

194 QoS

PNOS 4.5

- 181 -

LX Series Users Guide

I. .

195 QoS

J. QoS . Class Name . DEFAULT QoS Max bandwidth 500, Min bandwidth 150 . Confirm .

196 QoS ,

K. Confirm QoS .

197 QoS

LX Series Users Guide

- 182 -

PNOS 4.5

3.6. TCP MSS ConfigurationMSS Maximum Segment Size TCP . MSS MTU . TCP MSS , MSS . MSS .

A. Network Advanced .

198 TCP MSS (Network > Advanced)

B. Advanced TCP MSS .

199 Interface (Network > Advanced > TCP MSS)

PNOS 4.5

- 183 -

LX Series Users Guide

C. TCP MSS TCP MSS . ( TCP MSS default MTU .)

200 TCP MSS

. TCP MSS TCP MSS 1~65534 MTU : Default MSS Value

C. TCP MSS TCP MSS Configuration .

201 TCP MSS

D. TCP MSS Configuration TCP MSS .

202 TCP MSS

. TCP MSS TCP MSS (1~65534, MTU/mtu)

LX Series Users Guide

- 184 -

PNOS 4.5

E. TCP MSS . TCP MSS 1500 Confirm .

203 TCP MSS

F. Confirm DNS .

204 TCP MSS

PNOS 4.5

- 185 -

LX Series Users Guide

LX Series Users Guide

- 186 -

PNOS 4.5

3.7. Dynamic Route Route Dynamic Route . , Dynamic Route Protocol , .

3.7.1. Dynamic Route Status

A. Network Advanced .

205 Advanced (Network > Advanced)

B. Advanced Dynamic Route .

206 Interface (Network > Advanced > Dynamic Route)

PNOS 4.5

- 187 -

LX Series Users Guide

C. Dynamic Route Dynamic Route .

207 Dynamic Route

. Dynamic Route Dynamic Route / . Dynamic Route , Dynamic Route , . OSPF ENABLE : Dynamic Route DISABLE : Dynamic Route

OSPF(Open Shortest Path First) . OSPF / . ENABLE : OSPF DISABLE : OSPF

LX Series Users Guide

- 188 -

PNOS 4.5

BGP

BGP(Border Gateway Protocol) EGP , . BGP / . ENABLE : BGP DISABLE : BGP

RIP

RIP(Routing Information Protocol) , . RIP / . ENABLE : RIP DISABLE : RIP

C. Status Configuration Dynamic Route .

208 Dynamic Route

D. Dynamic Route / . Dynamic Route Dynamic Route .

PNOS 4.5

- 189 -

LX Series Users Guide

3.7.2. Dynamic Route Configuration

A. Dynamic Route . Configuration / . Dynamic Route CLI .

209 Dynamic Route Configuration

B. Static, OSPF, BGP, RIP / . Show , Clear .

LX Series Users Guide

- 190 -

PNOS 4.5

4. Load Balancing . , (, VIP, VRRP, Health Check), Advanced(DMZ, Manual Route, Exclusion IP, MAC Broadcast) .

210 Load Balancing

PNOS 4.5

- 191 -

LX Series Users Guide

4.1. Server Configuration (Real Server, RS) . . . . , RS , , .

A. Server .

211 Server (Load Balancing > Server)

B. . .

212

LX Series Users Guide

- 192 -

PNOS 4.5

. Group Name Sel Server IP Port Interface // RS IP RS Port RS AUTO : Weight QoS RS (WRR, WLC ) Bandwidth ( LX4000 .) Status Max: Min:

RS (/) ENABLE : RS DISABLE : RS

Sel

RS ////

C. Server Configuration .

213

PNOS 4.5

- 193 -

LX Series Users Guide

D. Server Configuration .

214

LX Series Users Guide

- 194 -

PNOS 4.5

. Group Name Server IP RS IP , . : 192.168.0.5-7 => 192.168.0.5, 192.168.0.6, 192.168.0.7

: 192.168.0.5;192.168.0.6;192.168.0.7

Port Interface

RS Port RS AUTO :

Weight

RS (WRR, WLC ). 1 RS .

QoS

Bandwidth ( LX4000 .) Max: Min:

Status

RS (/) ENABLE : RS DISABLE : RS

PNOS 4.5

- 195 -

LX Series Users Guide

E. . 10.10.10.24 IP WWW2 . Confirm .

215

F. .

216

LX Series Users Guide

- 196 -

PNOS 4.5

G. . IP . WWW2 10.10.10.24 .

217

H. IP . Group Name Server IP . Group Name Server IP .

218

PNOS 4.5

- 197 -

LX Series Users Guide

I. Interface Weight . Confirm .

219

J. 10.10.10.24 Interface Weight .

220

LX Series Users Guide

- 198 -

PNOS 4.5

K. . . WWW2 .

221

L. . Group Name . Group Name .

222

PNOS 4.5

- 199 -

LX Series Users Guide

M. IP Server IP . 10.10.10.25 . Confirm .

223

N. WWW2 10.10.10.25 IP .

224

LX Series Users Guide

- 200 -

PNOS 4.5

4.2. Service ConfigurationService, VIP, VRRP, Health Check .

4.2.1. Service Configuration . IP, Subnet Mask, , , , , , Persistent, Timeout, .

A. Service .

225 Service (Load Balancing > Service)

B. Service Service .

226 Service (Load Balancing > Service > Service)

PNOS 4.5

- 201 -

LX Series Users Guide

C. Service . .

227

. Service Name IP/Subnet Mask:Port Service Type Mode Proto. Route. Sched. Session Persist. Adv. (SLB, FWLB, VPNLB, VPNLB(MOGAHA), CSLB) (External, Internal) (TCP, UDP, IP) (DSR, NAT, FNAT) (RR, WRR, LC, WLC, Hash) Session Persistent Timeout , (Interface, Priority, IP Persistence, ARP Relay, Promiscuous Mode, QoS (QoS LX4000 .)) Bind Group Status RS (/) Sel ENABLE : . DISABLE :

////

LX Series Users Guide

- 202 -

PNOS 4.5

D. Service Configuration .

228

E. Service Configuration .

229

. Service Name Service Type . SLB : Server Load Balancing FWLB : Firewall Load Balancing VPNLB : VPN Load Balancing VPNLB(MOGAHA) : VPN Load Balancing for Government Network

PNOS 4.5

- 203 -

LX Series Users Guide

LX ( ) SLB, FWLB, VPNLB, VPNLB(MOGAHA), CSLB 5 . , SLB . , .

F. Service Type SLB .

230 (SLB)

LX Series Users Guide

- 204 -

PNOS 4.5

G. Service Type FWLB . ( VPNLB, VPNLB(MOGAHA) .)

231 (FWLB)

PNOS 4.5

- 205 -

LX Series Users Guide

. Service Name Service Type . SLB : Server Load Balancing FWLB : Firewall Load Balancing VPNLB : VPN Load Balancing VPNLB(MOGAHA) : VPN Network Protocol IP/Subnet Mask:Port (TCP, UDP, IP) IP: IP IP Load Balancing for Government

Subnet Mask: IP . Ex) 32 => 255.255.255.255 (Host) Ex) 24 => 255.255.255.0 (C class) Ex) 0 => 0.0.0.0 ( IP )

Port: ( Protocol TCP, UDP ) 0:

Mode

( Service Type SLB . Service Type SLB EXTERNAL .) EXTERNAL: INTERNAL: , Firewall LB

Routing

(DSR, NAT, FNAT) DSR : Direct Server Return NAT : (Half) Network Address Translation FNAT : Full Network Address Translation

LX Series Users Guide

- 206 -

PNOS 4.5

Scheduling

(RR, WRR, LC, WLC, Hash) RR : Round-Robin Scheduling WRR : Weighted Round-Robin Scheduling LC : Least Connection Scheduling WLC : Weighted Least Connection Scheduling Hashing : Hashing Scheduling

Session Persistence

Session Persistent Timeout , TCP TCP , 0 . 0 IP Persistence . RS .

IP Persistence

IP Persistence , IP . ON : IP Persistence OFF : IP Persistence

Status

(/) ENABLE : . DISABLE :

Group Name

RS , .

Interface

AUTO : IP ALL :

QoS

Bandwidth ( LX4000 .) Max: Min:

PNOS 4.5

- 207 -

LX Series Users Guide

Priority ARP Relay . (Reserved)

ARP Relay . ON : ARP Relay OFF : ARP Relay

Promiscuous Mode

L4 ON : Promiscuous Mode OFF : Promiscuous Mode

H. . WWW2 . Confirm .

232

LX Series Users Guide

- 208 -

PNOS 4.5

I. .

233

J. . WWW2 Routing NAT, Scheduling WRR . Service Name WWW2 .

234

PNOS 4.5

- 209 -

LX Series Users Guide

K. Service Name . . , Service Name . Routing NAT, Scheduling WRR , Confi