3
70
AhnLab TrusGuard Installation Guide
•
Specify the secondary port
Name
(e.g.: br0).
•
Select
Secondary
for
Type
.
•
Select a
Network Interface
.
•
Enter the
IPv4
address.
•
Select the response protocol in
Control
.
▪
PING: To respond to ICMP ping requests
▪
HTTPS: To allow access to administrative web page
▪
SSH: To allow connection to SSH terminal
•
To use interface-based NAT in HA mode, select
Enable (HA)
for
ARP Control
.
3
Click
OK
.
4
Click
Apply
.
Secondary Port and HA
Secondary port is useful when setting interface-based NAT in HA mode.
In a device using HA mode, a secondary port must be added to network interface connected to the
upper network.
All the secondary ports in devices using HA mode must use the same IP address.
The IP address to be used by the secondary port must be able to communicate with the
router/switch.
Select
Enable (HA)
for
ARP Control
.
Next-hop router/switch uses ARP communication to connect devices using HA mode and NAT
session.
To set NAT without using a secondary port, use
Policy-based NAT
.
The devices using HA mode must be able to communicate with all routers/switches, and use the
same IP address as the IP address profile.
Next-hop router/switch uses ARP communication to connect devices using HA mode and NAT
session.