Prev | Current Page 261 | Next

Yusuf Bhaiji

"Network Security Technologies and Solutions"


Example 6-2. Changing Between Contexts
hostname/admin# changeto system
hostname# changeto context customerA
hostname/customerA#
OR
hostname# changeto context customerB
hostname/customerB#
Security Levels
The Adaptive Security Algorithm permits connections from one firewall network interface to another by using a
security level mechanism. Each interface must be assigned with a security level ranging between 0 (lowest) to
100 (highest). By default, the Security Appliance assigns the internal network (the inside network) security level
100, whereas the external network (outside network) connected to the Internet is assigned with level 0. Other
networks, such as DMZ, can be assigned any number in between.
By default, the Security Appliance allows traffic to flow freely from an internal network (higher security level
100) to an external network (lower security level 0).
For traffic to flow between the interfaces through the Security Appliance, basic parameters need to be
configured. These include the interface name, security level, an IP address, and the dynamic or static routing
and enabling of the interface as physical interfaces are shut down by default.
Example 6-3 shows how to configure physical interface parameters in single mode.


Pages:
249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273