Juniper 防火墙核心技术-Zone
Juniper防火墙核心技术--Zone
分三类zone
1、安全zone
2、功能zone
3、隧道zone
以下为ISG-2000防火墙默认的zone
NS_ISG2000-> get zone
Total 14 zones created in vsys Root - 8 are policy configurable.
Total policy configurable zones for Root is 8.
------------------------------------------------------------------------
ID Name Type Attr VR Default-IF VSYS
0 Null Null Shared untrust-vr hidden Root
1 Untrust Sec(L3) Shared trust-vr redundant1 Root
2 Trust Sec(L3) trust-vr redundant2 Root
3 DMZ Sec(L3) trust-vr ethernet2/3 Root
4 Self Func trust-vr self Root
5 MGT Func trust-vr mgt Root
6 HA Func trust-vr ethernet3/4 Root
10 Global Sec(L3) trust-vr null Root
11 V1-Untrust Sec(L2) Shared trust-vr v1-untrust Root
12 V1-Trust Sec(L2) Shared trust-vr v1-trust Root
13 V1-DMZ Sec(L2) Shared trust-vr v1-dmz Root
14 VLAN Func Shared trust-vr vlan1 Root
15 V1-Null Sec(L2) trust-vr l2v Root
16 Untrust-Tun Tun trust-vr hidden.1 Root
------------------------------------------------------------------------
原文地址:http://victorly.blog.51cto.com/1165548/1845940