d-link security 1 internal lan1 ip: 192.168.1.0/24 internal lan2 ip: 192.168.2.0/24 internal lan3...

17
D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server IP:192.168.174.71/24 FTP Server 172.16.1.1 DMZ Scenario & Hands-on 4-1 Port mapping for server Network topology WAN1 IP: 192.168.174.70/24 FTP Server IP:192.168.174.71/24

Upload: marion-hodges

Post on 26-Dec-2015

265 views

Category:

Documents


2 download

TRANSCRIPT

Page 1: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

1

Internal LAN1IP: 192.168.1.0/24

Internal LAN2IP: 192.168.2.0/24

Internal LAN3IP: 192.168.3.0/24

WAN1IP: 192.168.174.70/24FTP ServerIP:192.168.174.71/24 FTP Server

172.16.1.1

DMZ

Scenario & Hands-on 4-1 Port mapping for server

Network topology

WAN1IP: 192.168.174.70/24FTP ServerIP:192.168.174.71/24

Page 2: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

2

Objectives

Access the FTP server by public IP address

Configuration logics

Create objects of public and private IP addresses for FTP server Create ARP object in ARP Table Cerate the IP rule (SAT and allow) for FTP server

Scenario & Hands-on 4-1 Port mapping for server

Page 3: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

3

Add the objects of both public and virtual IP addresses for FTP server

*Click “Address Book” under Objects

•Key in the correct IP addresses

1 2 3 4

Scenario & Hands-on 4-1 Port mapping for server 5

Page 4: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

4

Create the object in ARP Table •Click “ARP Table” under “Interfaces”

•Apply objects with the FTP IP address

1 2 3 4

Scenario & Hands-on 4-1 Port mapping for server 5

Page 5: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

5

Create the IP rule to map FTP server (SAT)

•Click “IP Rule” under “Rules”

•Choose the correct Action,Service,Interface,SAT setting and Network for the rule

1 2 3 4

Scenario & Hands-on 4-1 Port mapping for server 5

Page 6: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

6

Create the IP rule to allow FTP server (allow FTP)

•Click “IP Rule” under “Rules”

•Choose the correct Action,Service,Interface and Network for the rule

1 2 3 4

Scenario & Hands-on 4-1 Port mapping for server 5

Page 7: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

7

Scenario & Hands-on 4-1 Port mapping for server

After all configuration , Click “configuration” in main bar

• Click “Save and Active”

1 2 3 54

Page 8: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

8

Succeed to get in FTP server

Scenario & Hands-on 4-1 Port mapping for server

Page 9: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

9

WAN1:DHCPFTP Server: Group public IP address

FTP ServerGroup private IP

DMZ

Scenario & Hands-on 4-1 Exercise 4-1 - Port mapping for server

Goal:

1. Access to FTP server from Internet

FTP Server public IPGroup1: 192.168.200.51/24Group2: 192.168.200.52/24 . .Group9: 192.168.200.59/24

Group10: 192.168.200.60/24

FTP Server private IPGroup1: 172.17.101.1/24Group2: 172.17.102.1/24 . .Group9: 172.17.109.1/24

Group10: 172.17.110.1/24

Page 10: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

10

Internal LAN1IP: 192.168.1.0/24

Internal LAN2IP: 192.168.2.0/24

Internal LAN3IP: 192.168.3.0/24

WAN1IP: 192.168.174.70/24FTP ServerIP:192.168.174.71/24

FTP Server-1172.16.1.1

DMZ

Scenario & Hands-on 4-2 SAT and server load balance

Network topology

FTP Server-1172.16.1.2

Page 11: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

11

Objectives

Access two FTP servers by one public IP address

Configuration logics

Create objects of public and private IP addresses for two FTP servers Create ARP object in ARP Table Cerate the IP rule (SAT_SLB and allow) for FTP server

Scenario & Hands-on 4-2 SAT and server load balance

Page 12: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

12

Add the public IP address object for two FTP servers

•Click “Address Book” under “Objects”

•Key in the correct IP address

1 2 3 4 5

Scenario & Hands-on 4-2 SAT and server load balance6

Page 13: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

13

Add two virtual IP address objects for two FTP servers

•Click “Address Book” under “Objects”

•Key in the correct IP address

1 2 3 4 5

Scenario & Hands-on 4-2 SAT and server load balance6

Page 14: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

14

Apply the object of IP address to ARP Table

•Click “ARP Table” under “Interfaces”

•Apply objects for the FTP IP address

1 2 3 4 5

Scenario & Hands-on 4-2 SAT and server load balance6

Page 15: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

15

Create the IP rule of FTP server

•Click “IP Rule” in Rules

•Choose correct Action,Service,Interface,SLB_SAT and Network in the rule

1 2 3 4 5

Scenario & Hands-on 4-2 SAT and server load balance6

Page 16: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

16

Create the IP rule to allow FTP server (allow FTP)

•Click “IP Rule” in Rules

•Choose correct Action,Service,Interface and Network in the rule

1 2 3 4 5

Scenario & Hands-on 4-2 SAT and server load balance6

Page 17: D-Link Security 1 Internal LAN1 IP: 192.168.1.0/24 Internal LAN2 IP: 192.168.2.0/24 Internal LAN3 IP: 192.168.3.0/24 WAN1 IP: 192.168.174.70/24 FTP Server

D-Link Security

17

Scenario & Hands-on 4-2 SAT and server load balance

After all configuration , Click “configuration” on main menu bar

• Click “Save and Activate”

1 2 3 4 65