Management Zone Security; Converged Network Anaylyzer Template - Avaya 3.7 Configuration Manual

Release 3.7
Table of Contents

Advertisement

Management zone security

Management interface connection can be configured to simplify network deployments to
eliminate enterprise network dependencies on switches or routers.
The Management zone is a trusted network similar to the Private zone. Outgoing traffic is
allowed, but incoming traffic is restricted. Only traffic initiated by the security gateway is allowed.
High, medium and low security rules are the same.
Incoming
All traffic is allowed to come in from the management network.
Outgoing
Only packets from the Management IP to the Management zone are allowed.
Table 43: Management high, medium, and low security firewall rules
Rule Name
InBoundManagementInterfacePer
mitAccess
InBoundManagementPermitAll
OutBoundManagementInterfaceAc
cess
OutBoundManagementBlockAll

Converged Network Anaylyzer template

The converged network analyzer (CNA) template is a set of firewall rules that can be configured
to allow CNA traffic to travel through the network when the security gateway is setup as a
firewall device. Typically, the security gateway will not allow CNA traffic to travel through the
device, however; when the CNA template is configured and added to existing firewall rules CNA
traffic is allowed.
Action
Source
Desti-nation
Permit
Any
ManagementIP
Permit
Any
Any
Permit
Manage
Any
mentIP
Deny
Any
Any
Management zone security
Servi
Direct
Zone
ce
-ion
Any
In
Management
Any
In
Management
Any
Out
Management
Any
Out
Management
Issue 4 May 2005
Keep
State
No
Yes
No
No
311

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vpnmanager

Table of Contents