Juniper 防火墙核心技术-Zone

Juniper 防火墙核心技术-Zone

Juniper防火墙核心技术--Zone

分三类zone

1、安全zone

2、功能zone

3、隧道zone

以下为ISG-2000防火墙默认的zone

NS_ISG2000-> get zone

Total 14 zones created in vsys Root - 8 are policy configurable.

Total policy configurable zones for Root is 8.

------------------------------------------------------------------------

ID Name Type Attr VR Default-IF VSYS

0 Null Null Shared untrust-vr hidden Root

1 Untrust Sec(L3) Shared trust-vr redundant1 Root

2 Trust Sec(L3) trust-vr redundant2 Root

3 DMZ Sec(L3) trust-vr ethernet2/3 Root

4 Self Func trust-vr self Root

5 MGT Func trust-vr mgt Root

6 HA Func trust-vr ethernet3/4 Root

10 Global Sec(L3) trust-vr null Root

11 V1-Untrust Sec(L2) Shared trust-vr v1-untrust Root

12 V1-Trust Sec(L2) Shared trust-vr v1-trust Root

13 V1-DMZ Sec(L2) Shared trust-vr v1-dmz Root

14 VLAN Func Shared trust-vr vlan1 Root

15 V1-Null Sec(L2) trust-vr l2v Root

16 Untrust-Tun Tun trust-vr hidden.1 Root

------------------------------------------------------------------------

本文转自 msft 51CTO博客,原文链接:http://blog.51cto.com/victorly/1845940,如需转载请自行联系原作者

上一篇:教你如何开启/关闭ubuntu防火墙
下一篇:防火墙规则配置iptables