Open Frames Download Complete PDF Send Feedback Print This Page

Previous

Next

Example

This example shows how to add a Sync Exception rule for all Virtual Systems that only synchronizes HTTP traffic from 3.3.3.0/24 to 4.4.4.0/24 on the Active Chassis.

Enter vs range: [default: 0]
>all
Enter source IP [0.0.0.0]:
>3.3.3.0
Enter source IP mask length [0]:
>24
Enter destination IP [0.0.0.0]:
>4.4.4.0
Enter destination IP mask length [0]:
>24
Enter destination port [0]:
>80
Enter IP protocol number (for example: tcp = 6, udp = 17):
>6
Enter the sync exception rule [3 - sync to all chassis]:
0 = no sync
1 = sync only to local chassis
2 = sync only to other chassis
3 = sync to all chassis
4 = sync to all SGMs
>1
Enter delay notification [30 - http, 5 - other]:
> 30
to insert new exception to vs 0-1,2: <3.3.3.0/24, 4.4.4.0/24, 80, 6> sync rule: 1, delay: 5 ? (y/n)
>y

The Sync exception table shows this information:

+----------------------------------------------------------------------------+
|Sync exceptions table                                                       |
+-----+-------+---------------+-----------+-----+------+----+-----+----------+
|Idx  |VS     |Source  |Mask  |Destination|Mask |DPort |Ipp |Sync |Delay     |
+-----+-------+---------------+-----------+-----+------+----+-----+----------+
|1    |0-1,2  |0.0.0.0 |0     |0.0.0.0    |0    |53    |17  |0    |5         |
|2    |0-1,2  |3.3.3.0 |24    |4.4.4.0    |24   |80    |6   |1    |5         |
+-----+-------+---------------+-----------+-----+------+----+-----+----------+
*Sync: 0=no sync, 1=sync only to local Chassis,2=sync only to other Chassis,3 = sync to all Chassis
**Delay: The time it takes for connections created from templates to synchronize

+---------------------------------------------------------------------------------------+
|Sync chassis                                                                           |
+----+----------------+----------------+--------------------+--------------------+------+
|VS  |Between chassis |Within chassis  |Unicast sync        |Correction layer    |Ratio |
+----+----------------+----------------+--------------------+--------------------+------+
|0   |Enabled         |Enabled         |Enabled             |Enabled             |50    |
|1   |Enabled         |Enabled         |Enabled             |Enabled             |50    |
|2   |Enabled         |Enabled         |Enabled             |Enabled             |50    |
+----+----------------+------*---------+--------------------+--------------------+------+

+---------------------------------------------------------+
|Delay                                                    |
+---------------+--------------------+--------------------+
|VS             |http                |default             |
+---------------+--------------------+--------------------+
|0              |30                  |5                   |
|1              |30                  |5                   |
|2              |30                  |5                   |
+---------------+--------------------+--------------------+

Enter vs range: [default: 0-1,2]
 
Top of Page ©2014 Check Point Software Technologies Ltd. All rights reserved. Download Complete PDF Send Feedback Print