VMware VSHIELD MANAGER 4.1.0 UPDATE 1 - API Manual do Utilizador Página 27

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
Vista de página 26
VMware, Inc. 27
4
vShieldZonesprovidesfirewallprotectionaccesspolicyenforcement.Trafficdetailsincludesources,
destinations,directionofsessions,applications,andportsbeingused.Trafficdetailscanbeusedtocreate
firewallallowordenyrules.
Thischapterincludesthefollowingtopics:
“UsingZonesFirewall”onpage 27
“CreateaZonesFirewallRule”onpage 29
“CreateaLayer2/Layer3ZonesFirewallRule”onpage 30
“ValidatingActiveSessionsagainsttheCurrentZonesFirewallRules”onpage 31
“ReverttoaPreviousZonesFirewallConfiguration”onpage 31
“DeleteaZonesFirewallRule”onpage 32
Using Zones Firewall
ZonesFirewallisacentralized,hierarchicalfirewallforESXhosts.ZonesFirewallenablesyoutocreaterules
thatallowordenyaccesstoandfromyourvirtualmachines.EachinstalledvShieldZonesenforcestheApp
Zonesrules.
YoucanmanageZonesFirew allrulesatthedatacenter,cluster,andportgrouplevels
toprovideaconsistent
setofrulesacrossmultiplevShieldZonesinstancesunderthesecontainers.Asmembershipinthesecontainers
canchangedynamically,ZonesFirewallmaintainsthestateofexistingsessionswithoutrequiring
reconfigurationoffirewallrules.Inthisway,ZonesFirewalleffectivelyhasacontinuousfootprintoneachESX
host
underthemanagedcontainers.
WhencreatingZonesFirewallrules,youcreate5tuplefirewallrulesbasedonspecificsourceanddestinationIP
addresses.
Zones Firewall Management
4
NOTEYoucanupgradevShieldZonestovShieldAppbyobtainingavShieldApplicense.vShieldApp
enhancesvShieldZonesprotectionbyofferingFlowMonitoring,customcontainercreation(SecurityGroups),
andcontainerbasedaccesspolicycreationandenforcement.
YoudonothavetouninstallvShieldZonestoinstallvShieldApp.All
vShieldZonesinstancesbecomevShield
Appinstances,theZonesFirewallbecomesAppFirewall,andtheadditionalvShieldAppfeaturesareenabled.
Vista de página 26
1 2 ... 22 23 24 25 26 27 28 29 30 31 32 ... 161 162

Comentários a estes Manuais

Sem comentários