4. Interfaces

Each detected network interface is configured in this section.

Configuration parameters are repeated for each interface allowing system administrator to configure one interface at a time. Parameters like IP, network mask, IP aliases, fail-over, etc. Short description of each detected interface is displayed in the sections.

For example, AMD 79c970 PCI and Intel PRO-1000MT.

4.1. IP configuration

IP configuration specific parameters.

IP address

Input field

System IP address configured for the interface.

Valid input

A valid IP address

Input example

192.168.0.200

Default value

None

Netmask

Input field

Network mask of the interface subnet.

Valid input

A valid network mask

Input example

255.255.255.0

Default value

None

Description

Input field

A description of the interface.

Valid input

Any string

Input example

proxy interface

Default value

None

IP aliases

Input field

IP address aliases for the interface.

Valid input

IP address separated by new-line

Input example

192.168.0.201, 192.168.0.202

Default value

None

[Note] Note

IP aliases will not be backed up or load balanced in a Web Security Manager cluster. IP addresses which are served by a cluster are configured in Clustering (Section 1, “Clustering”).

4.2. Role

Every configured network interface can be assigned different roles. Depending on the number of network interfaces present, roles should be assigned accordingly. It is recommended to assign a dedicated interface for each possible role.

Network interfaces can be assigned the following roles:

Inbound traffic

Check box

Enable or disable inbound traffic for the interface.

If checked, the interface (and all IP addresses attached to it) will respond to inbound HTTP/HTTPS requests from clients.

If the selected network interface is exposed to clients, this role should be assigned.

Default: <unchecked>

[Note] Note

Web Security Manager will not pass any traffic from clients to back-end servers before at least one network interface is assigned this role.

Synchronization

Check box

Enable or disable Synchronization for the interface.

If checked, the Interface (only it's system IP address) is used for synchronization.

Fail-over must be active (on the same or any other network interface) before synchronization is active.

Default: <unchecked>

Management

Check box + input.

Enable or disable Management for the interface.

If checked, the Interface (only it's system IP address) is used for web-based management.

The Management port sets the port the management server answers.

Valid input

An TCP/IP port number

Input example

8080

Default value

2000

Management interface is available via HTTPS/SSL on the configured port.

Default: <checked>

4.3. Media settings

This section allows system administrator to configure network interface media settings like speed and duplex. Normally, a network interface is set to autoselect meaning that the speed and duplex settings are automatically negotiated with the uplink switch.

Media

Drop down list

Media settings.

Select the media settings from the drop down menu.

Valid input

Supported media settings for the interface is displayed in the drop down menu.

Default value

Autoselect

© 2005 - 2012 Alert Logic inc.