Load Balancing Metrics For Bridging Fwlb; Health Check; Persistency; Firewall Load Balancing Management Security - Avaya P333R-LB User Manual

Stackable load balancing switch
Table of Contents

Advertisement

Load Balancing Metrics for Bridging FWLB

Bridging FWLB uses the following metrics:
Hash.
MinMiss Hash.
Hash is the default metric for FWLB, and the metric parameter is: Source IP,
Destination IP. For full information about Hash and MinMiss Hash, see Load
Balancing Metrics for Transparent Routing FWLB on page 202. For full information
on selecting a load balancing metric, see Selecting a Load Balancing Metric on page
204.

Health Check

As with Transparent Routing FWLB, the interfaces on both sides of the firewall are
periodically pinged and checked if an answer was received. Since each firewall is
configured on a different VLAN, the ping will always remain on the same firewall.

Persistency

Each P333R-LB interface and the firewall connected to it reside in a separate VLAN.
This ensures persistency since all the traffic through a particular firewall is
contained in the firewall's VLAN.

Firewall Load Balancing Management Security

In some scenarios, the P333R-LB may be placed outside of the protection of the
firewalls and be exposed to intrusion attempts through its L2 and L3 management
interfaces. This is especially true for Transparent and Bridging Load Balancing,
where the P333R-LB is placed outside the internal network. The intrusion attempts
might be either via Telnet (CLI) or SNMP/HTTP (Embedded Web manager).
The user can prevent attacks by implementing the following:
Change the L2 IP address of the stack agent to an IP address on a VLAN and
subnet not accessible to the Access Router that connects the device to the
outside world.
Configure Access Rules on the IP interfaces (L3) of the P333R-LB that is exposed
to the outside world, that will block Telnet, SNMP and HTTP traffic sent to
those interfaces as the final destination. This model can only be managed from
the LAN. For more information, see Policy Commands on page 267.
Avaya P333R-LB User's Guide
Chapter 7
Firewall Load Balancing
215

Advertisement

Table of Contents
loading

Table of Contents