Planet CS-1000 [87/226] Virtual server
![Planet CS-1000 [87/226] Virtual server](/views2/1071684/page87/bg57.png)
Multi-Homing Security Gateway User’s Manual
Step 4: Configure Outgoing Policy rule to enable Content Blocking Function.
3.3.7 Virtual Server
The Multi-Homing Security Gateway separates an enterprise’s Intranet and Internet into LAN networks and
WAN networks respectively. Generally, in order to allocate enough IP addresses for all computers, an
enterprise assigns each computer a private IP address, and converts it into a real IP address through
Multi-Homing Security Gateway’s NAT (Network Address Translation) function. If a server providing service to
the WAN networks is located in the LAN networks, outside users can’t directly connect to the server by using
the server’s private IP address.
The Multi-Homing Security Gateway’s Virtual Server can solve this problem. A virtual server has set the real
IP address of the Multi-Homing Security Gateway’s WAN network interface to be the Virtual Server IP.
Through the virtual server feature, the Multi-Homing Security Gateway translates the virtual server’s IP
address into the private IP address of physical server in the LAN network. When outside users on the Internet
request connections to the virtual server, the request will be forwarded to the private LAN server.
Virtual Server owns another feature known as one-to-many mapping. This is when one virtual server IP
address on the WAN interface can be mapped into 4 LAN network server private IP addresses. This option is
useful for Load Balancing, which causes the virtual server to distribute data packets to each private IP
addresses (which are the real servers). By sending all data packets to all similar servers, this increases the
server’s efficiency, reduces risks of server crashes, and enhances servers’ stability.
How to use Virtual Server and mapped IP
Virtual Server and Mapped IP are part of the IP mapping (also called DMZ, De-Militarization Zone) scheme.
By applying the incoming policies, Virtual Server and IP mapping work similarly. They map real IP addresses
to the physical servers’ private IP addresses (which are opposite to NAT), but there are still some differences:
Virtual Server can map one real IP to several LAN physical servers while Mapped IP can
only map one real IP to one LAN physical server (1-to-1 Mapping). The Virtual Servers’ load
balance feature can map a specific service request to different physical servers running the
same services.
Virtual Server can only map one real IP to one service/port of the LAN physical servers
while Mapped IP maps one real IP to all the services offered by the physical server.
IP mapping and Virtual Server work by binding the IP address of the WAN virtual server to
the private LAN IP address of the physical server that supports the services. Therefore
users from the WAN network can access servers of the LAN network by requesting the
service from the IP address provided by Virtual Server.
- 81 -
Содержание
- Cs 1000 1
- Multi homing security gateway 1
- User s manual 1
- Ce mark warning 2
- Copyright 2
- Customer service 2
- Disclaimer 2
- Multi homing security gateway user s manual 2
- Revision 2
- Trademarks 2
- Table of contents 4
- Chapter 1 introduction 7
- Features 7
- Package contents 8
- Multi homing security gateway front view 9
- Multi homing security gateway rear panel 9
- Specification 9
- Chapter 2 getting started 11
- Step 1 11
- Step 2 11
- Web configuration 11
- Configure wan1 interface 12
- Configure dmz interface 13
- Configure wan2 interface 13
- Configure policy 14
- Step 1 14
- Step 2 14
- Step 3 14
- Step 4 15
- Administration 16
- Chapter 3 web configuration 16
- Configure 16
- System 16
- Logout 17
- Permitted ips 19
- Setting 21
- Software update 21
- Date time 26
- Multiple subnet 27
- Route table 32
- Dynamic dns 35
- Host table 37
- Language 39
- Interface 40
- Logout 40
- Address 46
- How to use address table 46
- Policy object 46
- Lan group 48
- Wan group 53
- Dmz group 58
- Service 60
- Pre defined 61
- Custom 62
- Schedule 66
- Auth setting 72
- Authentication 72
- Auth user 73
- Auth group 76
- Radius serve 79
- Content blocking 81
- Url blocking 81
- Scripts 83
- Download 85
- Upload 86
- Virtual server 87
- Mapped ip 88
- Virtual server 90
- Ipsec autokey 95
- Pptp server 98
- Pptp client 101
- Configuration of cs 1000 113
- Configuration of winxp 116
- Outgoing 164
- Policy 164
- Incoming 168
- Wan to dmz lan to dmz 172
- Dmz to wan dmz to lan 175
- Mail security 179
- Configure 180
- Anti spam 183
- Setting 184
- Whitelist 188
- Blacklist 190
- Training 193
- Anti virus 199
- Setting 199
- Spam mail 199
- Virus mail 200
- Setting 201
- Signature 202
- Idp report 205
- Anomaly flow ip 206
- Monitor 207
- Traffic 207
- Connection 211
- Log backup 212
- Log mail configuration enable log mail support 213
- Accounting report 214
- Setting 214
- Outbound 215
- Inbound 218
- Statistic 220
- Wan statistics 221
- Policy statistics 222
- Time viewable by minutes hours days week month and year 222
- Interface status 223
- Status 223
- Authentication 224
- Arp table 225
- Dhcp clients 225
Похожие устройства
- Singer BRILLIANCE 6160 Инструкция по эксплуатации
- Planet CS-2000 Инструкция по эксплуатации
- Alienware x51-4910 Инструкция по эксплуатации
- Singer FASHION MATE 7256 Инструкция по эксплуатации
- Planet DKVM-1700 Инструкция по эксплуатации
- HP Omni 27-1000er H1F63EA Инструкция по эксплуатации
- Singer LIMITED EDITION 160 Инструкция по эксплуатации
- Planet IKVM-8000 Инструкция по эксплуатации
- Samsung S24B300BL Инструкция по эксплуатации
- Singer PROMISE 1408 Инструкция по эксплуатации
- Planet KVM-201 Инструкция по эксплуатации
- Samsung GT-P3100 8Gb Silver Инструкция по эксплуатации
- Singer TRADITION 2250 Инструкция по эксплуатации
- Planet KVM-401 Инструкция по эксплуатации
- Samsung GT-P3100 8Gb White Инструкция по эксплуатации
- Singer SIMPLE 3223 Инструкция по эксплуатации
- Planet KVM-210 Инструкция по эксплуатации
- Juki HZL-27Z Инструкция по эксплуатации
- Planet KVM-410 Инструкция по эксплуатации
- Merrylock 006 Инструкция по эксплуатации