Nortel Networks WEB OS 212777 User Manual
Page 341
![background image](/manuals/191898/341/background.png)
Web OS 10.0 Application Guide
Chapter 13: Firewall Load Balancing
n
341
212777-A, February 2002
Complete the Configuration of the Primary Clean-Side Web Switch
1.
Create an FWLB real server group on the primary clean-side Web switch.
A real server group is used as the target for the FWLB redirection filter. Each IP address
assigned to the group represents a return path through a different firewall. In this case, since
two firewalls are used, two addresses are added to the group. The two addresses are the inter-
faces of the dirty-side Web switch, and are configured as if they are real servers.
N
OTE
–
Remember that IF 2 is used on all Web switches whenever routing through the top
firewall, and IF 3 is used on all Web switches whenever routing through the lower firewall.
N
OTE
–
The clean-side Web switch must use the same metric as defined on the dirty side. For
information on using metrics other than
hash
, see
“Free-Metric FWLB” on page 346
>> # /cfg/slb
>> # on
>> # real 1
>> # rip 10.10.2.1
(IF2 of the primary dirty-side Web switch)
>> # ena
>> # ../real 2
>> # rip 10.10.2.2
(IF2 of the primary dirty-side Web switch)
>> # ena
>> # ../group 1
>> # add 1
>> # add 2
>> # metric hash