
Chapter 6 Network
138 X Family LSM User’s Guide V 2.5.1
Create or Edit a Security Zone
STEP 1
From the LSM menu, select Network > Security Zones.
STEP 2
On the Create Network Security Zone page, click Create Security Zone or click the Edit icon
for the zone you want to modify.
STEP 3
On the Create/Edit Security Zone page, configure the zone as required.
For more information, refer to “Configure a Security Zone” on page 139.
Bandwidth Management (rate limiting)
Enable bandwidth rate
limiting
Select this option to specify bandwidth rate limiting for the access
speed for outbound (upload) traffic and inbound (download) traffic
across the device. Applying bandwidth limitation physically limits the
rate of traffic flow. You can define separate limits for outbound and
inbound traffic in kbps.
Note Bandwidth Management is typically used to
prevent packet queuing on a WAN device to provide lower
end-to-end latency on latency sensitive traffic such as
voice over IP.
Network Protection
If you configure Network Protection options, verify that all IP hosts that use the zone are within the
IP addresses specified. Hosts may include:
• directly attached hosts connected to the zone via the Ethernet ports associated with the zone
• remote IP subnets connected via routers in the zone
• IP Address pools specified for any PPTP or L2TP server where the VPNs terminate in the security
zone.
This option is commonly used for transparent deployments to ensure that an IP address can appear
in only one security zone.
IP Address Restrictions The IP addresses for this security zone, either an IP Address Group,
IP subnet or IP range.
Note If you do not specify any restriction, the device will
automatically learn the IP addresses of clients in each
Security Zone.
Prevent Security Zone
sending to VPN tunnels
Determines whether traffic is allowed from this security zone to an
IPSec VPN tunnel.
Table 6–2: Security Zone Configuration Parameters (Continued)
Parameter Description
Komentarze do niniejszej Instrukcji