Ideally you want to get these IPSec tunnel interfaces modeled within Zenoss so 
this happens automatically. With that disclaimer out of the way, here's how you 
would manually construct the relationship.

For this demonstration we will be using the example tunnel network of 
10.0.254.0/30 with firewallA being 10.0.254.1 and firewallB being 10.0.254.2.

1. Go to the OS tab of firewallA and add an IpInterface called ipsec1
    a. Set the IP address to 10.0.254.1/30
    b. Set the interface to admin up, oper up.
    c. Set the type to manualTunnel
    d. Set the monitored to False
    e. Lock this interface from deletion and updates

2. Repeat step one replacing the IP address with firewallB's IP.

Because these two firewalls are in two separate locations and share the 
10.0.254.0/30 subnet, the links will be drawn. The interfaces must be locked to 
prevent the modeler from deleting them on the next cycle.




-------------------- m2f --------------------

Read this topic online here:
http://community.zenoss.com/forums/viewtopic.php?p=12367#12367

-------------------- m2f --------------------



_______________________________________________
zenoss-users mailing list
[email protected]
http://lists.zenoss.org/mailman/listinfo/zenoss-users

Reply via email to