Cisco SA520-K9 Administration Guide - Page 64

Configuring the DMZ Settings, > Optional Port > Optional Port Mode

Page 64 highlights

Networking Configuring a DMZ 2 Configuring the DMZ Settings Follow this procedure to configure your DMZ port settings, and then create firewall rules to allow traffic to access the services on your DMZ. STEP 1 First configure the Optional port for use as a DMZ: a. Click Networking > Optional Port > Optional Port Mode, or from the Getting Started (Advanced) page, under DMZ Port, click Set Optional Port to DMZ mode. The Optional Port Mode window opens. b. Choose DMZ. c. Click Apply to save your settings. If you are using the Getting Started (Advanced) page, click Getting Started > Advanced to return to the list of configuration tasks. STEP 2 Click Networking > Optional Port > DMZ Config, or from the Getting Started (Advanced) page, under DMZ Port, click Configure DMZ settings. The DMZ Configuration window opens. STEP 3 In the DMZ Port Setup area, enter an IP Address and the Subnet Mask for the DMZ port on the internal network. Devices on the DMZ network communicate with the router by using this IP address.The default DMZ IP address of 172.16.2.1 is shown on the screen. STEP 4 In the DHCP for DMZ Connected Computers area, enter the following information: • DHCP Mode: Choose one of the following modes: - None: Choose this option if If the computers on the DMZ are configured with static IP addresses or are configured to use another DHCP server. - DHCP Server: Choose this option to allow the security appliance to act as a DHCP server and to assign IP addresses to all devices that are connected to the DMZ network. Also complete the fields that are highlighted with white backgrounds. - DHCP Relay: Choose this option to allow the security appliance to use a DHCP Relay. If you choose this mode, also enter the IP address of the Relay Gateway. • Domain Name (optional): Enter a name for the domain. Cisco SA500 Series Security Appliances Administration Guide 64

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240

Networking
Configuring a DMZ
Cisco SA500 Series Security Appliances Administration Guide
64
2
Configuring the DMZ Settings
Follow this procedure to configure your DMZ port settings, and then create
firewall rules to allow traffic to access the services on your DMZ.
STEP 1
First configure the Optional port for use as a DMZ:
a.
Click
Networking
> Optional Port > Optional Port Mode
,
or from the Getting
Started (Advanced) page, under DMZ Port, click
Set Optional Port to DMZ
mode
.
The Optional Port Mode window opens.
b.
Choose
DMZ
.
c.
Click
Apply
to save your settings.
If you are using the Getting Started (Advanced) page, click
Getting Started >
Advanced
to return to the list of configuration tasks.
STEP
2
Click
Networking
> Optional Port > DMZ Config
, or from the Getting Started
(Advanced) page, under
DMZ Port
, click
Configure DMZ settings
.
The DMZ Configuration window opens.
STEP
3
In the
DMZ Port Setup
area, enter an
IP Address
and the
Subnet Mask
for the
DMZ port on the internal network. Devices on the DMZ network communicate with
the router by using this IP address.The default DMZ IP address of 172.16.2.1 is
shown on the screen.
STEP
4
In the
DHCP for DMZ Connected Computers
area, enter the following
information:
DHCP Mode:
Choose one of the following modes:
-
None:
Choose this option if If the computers on the DMZ are configured
with static IP addresses or are configured to use another DHCP server.
-
DHCP Server:
Choose this option to allow the security appliance to act
as a DHCP server and to assign IP addresses to all devices that are
connected to the DMZ network. Also complete the fields that are
highlighted with white backgrounds.
-
DHCP Relay:
Choose this option to allow the security appliance to use a
DHCP Relay. If you choose this mode, also enter the IP address of the
Relay Gateway.
Domain Name (optional):
Enter a name for the domain.