Virtual Routers Overview; Configuring Virtual Routers (Nsm Procedure) - Juniper NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 Manual

Configuring screenos devices guide
Hide thumbs Also See for NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01:
Table of Contents

Advertisement

Configuring ScreenOS Devices Guide

Virtual Routers Overview

Related
Documentation

Configuring Virtual Routers (NSM Procedure)

296
Route Maps Overview on page 300
A security device can divide its routing component into two or more virtual routers. A
virtual router supports static routing, dynamic routing protocols, and multicast protocols,
which you can enable simultaneously in one virtual router. A security device can contain
the following types of virtual routers (VRs):
Predefined Virtual Routers—Each security device contains two predefined virtual
routers:
trust-vr—By default, contains all predefined security zones and any user-defined
zones.
untrust-vr—By default, does not contain any security zones.
You cannot delete the trust-vr or untrust-vr predefined virtual routers.
Custom Virtual Routers—On some security devices, you can create and configure
additional custom virtual routers.
You can define multiple VRs, but trust-vr is the default VR. All predefined and custom
security zones (and all interfaces bound to those security zones) are bound to the trust-vr
virtual router. To bind a security zone to the untrust-vr or to a custom VR, you must first
unbind all interfaces from the zone. For a virtual system (vsys), you can select a virtual
router to be the default router for the vsys.
The management virtual router supports out-of-band management and segregates
firewall management traffic away from production traffic. The feature is disabled by
default and you can enable it by setting a virtual router.
Configuring Virtual Routers Overview on page 294
Route Types Overview on page 295
Virtual Router General Properties Overview on page 297
Route Maps Overview on page 300
To configure an ISG2000 device running ScreenOS 6.2 or later:
In the NSM navigation tree, select Device Manager > Devices. Double-click the device
1.
object to open the device configuration.
Click the Edit icon to edit the ISG2000 device.
2.
In the device navigation tree, click Network > Virtual Router. The Virtual Router screen
3.
appears.
Create a customer virtual router, customer-vr1, and save the changes.
4.
Copyright © 2010, Juniper Networks, Inc.

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 and is the answer not in the manual?

Table of Contents