Reference Manual for the ProSafe VPN Firewall FVS114
8-10
Advanced Configuration
202-10098-01, April 2005
8.
Type a number between 1 and 15 as the Metric value.
This represents the number of firewalls between your network and the destination. Usually, a
setting of 2 or 3 works, but if this is a direct connection, set it to 1.
9.
Click
Apply
to have the static route entered into the table.
Static Route Example
As an example of when a static route is needed, consider the following case:
•
Your primary Internet access is through a cable modem to an ISP.
•
You have an ISDN firewall on your home network for connecting to the company where
you are employed. This firewall’s address on your LAN is 192.168.0.100.
•
Your company’s network is 134.177.0.0.
When you first configured your firewall, two implicit static routes were created. A default route
was created with your ISP as the gateway, and a second static route was created to your local
network for all 192.168.0.x addresses. With this configuration, if you attempt to access a device on
the 134.177.0.0 network, your firewall will forward your request to the ISP. The ISP forwards your
request to the company where you are employed, and the request will likely be denied by the
company’s firewall.
In this case you must define a static route, telling your firewall that 134.177.0.0 should be accessed
through the ISDN firewall at 192.168.0.100. The static route would look like
Figure 8-6
.
In this example:
•
The Destination IP Address and IP Subnet Mask fields specify that this static route applies to
all 134.177.x.x addresses.
•
The Gateway IP Address fields specifies that all traffic for these addresses should be
forwarded to the ISDN firewall at 192.168.0.100.
•
A Metric value of 1 will work since the ISDN firewall is on the LAN.
•
Private is selected only as a precautionary security measure in case RIP is activated.
Enabling Remote Management Access
Using the Remote Management page, you can allow a user or users on the Internet to configure,
upgrade and check the status of your FVS114 VPN Firewall.