VMware VSHIELD MANAGER 4.1.0 UPDATE 1 - API Uživatelský manuál Strana 31

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 162
  • Tabulka s obsahem
  • ŘEŠENÍ PROBLÉMŮ
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 30
VMware, Inc. 31
Chapter 4 Zones Firewall Management
7Doubleclickeachcellinthenewrowtotypeorselecttheappropriateinformation.
YoucantypeIPaddressesintheSourceandDestinationfields
8 (Optional)SelecttheLogcheckboxtologallsessionsmatchingthisrule.
9ClickCommit.
Validating Active Sessions against the Current Zones Firewall Rules
Bydefault,avShieldZonesinstancematchesfirewallrulesagainsteachnewsession.Afterasessionhasbeen
established,anyfirewallrulechangesdonotaffectactivesessions.
TheCLIcommandvalidate sessionsenablesyoutovalidateactivesessionsagainstthecurrentZones
Firewallrulesettopurgeanysessionsthatare
inviolationofthecurrentruleset.Afterafirewallruleset
update,youshouldvalidateactivesessionstopurgeanyexistingsessionsthatareinviolationoftheupdated
policy.
AftertheZonesFirewallupdateiscomplete,issuethevalidate sessionscommandfromtheCLIofa
vShieldZonesinstanceto
purgesessionsthatareinviolationofcurrentpolicy.
To validate active sessions against the current firewall rules
1 UpdateandcommittheZonesFirewallrulesetattheappropriatecontainerlevel.
2OpenaconsolesessiononavShieldZonesinstanceissuethevalidate sessionscommand.
vShieldZones> enable
Password:
vShieldZones# validate sessions
Revert to a Previous Zones Firewall Configuration
ThevShieldManagersavesasnapshotofAppFirewallsettingseachtimeyoucommitanewrule.Clicking
CommitcausesthevShieldManagertosavethepreviousconfigurationwithatimestampbeforeaddingthe
newrule.ThesesnapshotsareavailablefromtheReverttoSnapshotdropdownmenu.
To revert to a previous App Firewall configuration
1InthevSphere
Client,gotoInventory>HostsandClusters.
2 Selectadatacenterorclusterresourcefromtheinventorypanel.
3ClickthevShieldZonestab.
4ClickZonesFirewall.
5FromtheReverttoSnapshotdropdownlist,selectasnapshot.
Snapshotsarepresentedintheorderoftimestamps,withthemostrecentsnapshotlistedatthetop.
6Viewsnapshotconfigurationdetails.
7Dooneofthefollowing:
Toreturntothecurrentconfiguration,selecttheoptionfromtheReverttoSnapshotdropdownlist.
ClickCommittooverwritethecurrentconfigurationwiththesnapshotconfiguration.
Zobrazit stránku 30
1 2 ... 26 27 28 29 30 31 32 33 34 35 36 ... 161 162

Komentáře k této Příručce

Žádné komentáře