IBM Tivoli Monitoring > Version 6.3 Fix Pack 2 > Installation Guides > Installation Guide > Firewalls > Implementation with firewall gateway

IBM Tivoli Monitoring, Version 6.3 Fix Pack 2


Example gateway configuration scenario

This section illustrates firewall gateway configuration in a three-hop network configuration.

This example uses a three-hop firewall scenario, shown in Figure 1. This scenario makes the following assumptions:

The effects of NAT on cross-zone addresses are not shown for clarity. NAT connections are fully supported. Dynamic NAT connections may require that inbound connection verification be removed. This is accomplished by removing the <connection> tag under the "listening" <bind>.

Figure 1. Three-hop firewall scenario


Public Network (TEMAG3)

The public network has the following characteristics:

The TEMAG3 gateway has the following configuration:


DMZ2 Network (TEMAG22)

The DMZ2 network has the following characteristics:

The TEMAG22 gateway has the following configuration:


DMZ1 Network (TEMAG21)

The DMZ1 network has the following characteristics:

The TEMAG21 gateway has the following configuration:


Trusted Network (TEMAG1)

The Trusted Network has the following characteristics:

The TEMAG1 gateway has the following configuration:


Parent topic:

Implementation with firewall gateway

+

Search Tips   |   Advanced Search