- Table of Contents
-
- 07-System
- 01-High availability group
- 02-VRRP
- 03-Track
- 04-BFD
- 05-NQA
- 06-Basic log settings
- 07-Session log settings
- 08-NAT log settings
- 09-AFT log settings
- 10-Threat log settings
- 11-Application audit log settings
- 12-NetShare log settings
- 13-URL filtering log settings
- 14-Attack defense log settings
- 15-Bandwidth alarm logs
- 16-Configuration log settings
- 17-Security policy log
- 18-Heartbeat log settings
- 19-IP access logs
- 20-WAF log settings
- 21-Bandwidth management logs
- 22-Context rate limit logging
- 23-Report settings
- 24--Session settings
- 25-MAC authentication online users
- 26-Signature upgrade
- 27-Software upgrade
- 28-License management
- 29-IRF
- 30-IRF advanced settings
- 31-Contexts
- 32-Administrators
- 33-Date and time
- 34-MAC address learning through a Layer 3 device
- 35-SNMP
- 36-Configuration management
- 37-About
- 38-Reboot
- 39-Ping
- 40-Tracert
- 41-Packet capture
- 42-Webpage Diagnosis
- 43-Diagnostic Info
- 44-Packet trace
- 45-Load balancing test
- 46-IPsec diagnosis
- 47-Fast Internet Access
- 48-IP reputation log settings
- 49-Load balancing logging
- Related Documents
-
Title | Size | Download |
---|---|---|
47-Fast Internet Access | 43.14 KB |
Fast Internet Access
Introduction
Perform this task to configure the device to access the Internet.
Access mode
Access modes include the routing mode and the transparent mode.
Routing mode
This mode uses the routing function of the device gateway. In this mode, three Internet access methods are supported. Select a method according to the information provided by the service provider.
1. Configure the WAN interface.
The WAN interface supports the following access methods, as shown in Table 1.
Item |
Description |
Specified IP address |
Select this method when you get a fixed IP address from the service provider. |
DHCP |
Select this method if you want to automatically obtain IP addresses from the service provider (or DHCP server). |
PPPoE |
Select this method if you obtain an Internet access account from the service provider. |
¡ When you select Specified IP address for the Internet access method, Table 2 describes the WAN interface configuration items.
Table 2 WAN interface configuration items when Specified IP address is selected
Item |
Description |
Interface |
Select a WAN interface. |
IP address/subnet mask |
IP address and subnet mask of the WAN interface. This parameter is provided by the service provider. The IP address is in dotted decimal notation, for example, 10.1.1.1. The subnet mask is in the range of 1 to 31. |
Default route |
IP address of the default route of the WAN interface. Packets that internal users send to the Internet are sent to the next hop of the default route through the WAN interface. This parameter is provided by the service provider and is in dotted decimal notation, for example, 10.1.1.254. |
Gateway |
Gateway address of the interface. |
Primary DNS server |
IP address of the primary DNS server. For more information about DNS, see DNS Help. This parameter is provided by the service provider. |
Secondary DNS server |
IP address of the secondary DNS server. When the primary DNS server fails, the device uses the secondary DNS server for name resolution. This parameter is provided by the service provider. |
¡ When you select DHCP for the Internet access method, Table 3 describes the WAN interface configuration items.
Table 3 WAN interface configuration items when DHCP is selected
Item |
Description |
Interface |
Select a WAN interface. |
¡ When you select PPPoE for the Internet access method, Table 4 describes the WAN interface configuration items.
Table 4 WAN interface configuration items when PPPoE is selected
Item |
Description |
Interface |
Select a WAN interface. |
Username |
Username of the Internet access account, which is provided by the service provider. |
Password |
Password of the Internet access account, which is provided by the service provider. |
Online mode |
· Permanently online—The PPPoE session permanently exists after it is established. · Auto offline after idle timeout—The device automatically disconnects the PPPoE session if no traffic passes within the specified period. As a best practice, select this mode for time-based accounting users. |
Automatically obtain IP address |
Allows the Internet access interface to automatically obtain an IP address from the service provider. |
Use specified IP address |
Allows you to manually specify an IP address for the Internet access interface. |
IP address/subnet mask |
This parameter is provided by the service provider. The IP address is in dotted decimal notation, for example, 10.1.1.1. The subnet mask is in the range of 1 to 31. |
2. Configure the LAN interface.
Table 5 describes the LAN interface configuration items.
Table 5 LAN interface configuration items
Item |
Description |
Interface |
Select the interface that connects to the LAN. |
IP address/subnet mask |
Specify the IP address and subnet mask for the LAN interface. The IP address is in dotted decimal notation, for example, 172.16.1.1. The subnet mask is in the range of 1 to 31. |
DHCP |
Allows users in the LAN to automatically obtain IP addresses. For more information about DHCP, see DHCP Help. |
Address pool name |
DHCP address pool name |
Address range for allocation |
Address range allocated to DHCP clients. |
3. Configure the DMZ interface.
Table 6 describes the DMZ interface configuration items.
Table 6 DMZ interface configuration items
Parameter |
Description |
Interface |
Select the interface that connects to the DMZ zone. Typically, the DMZ zone is used for placing the devices providing external services, for example, the servers. |
IP address/subnet mask |
Specify the IP address and subnet mask for the DMZ interface. The IP address is in dotted decimal notation, for example, 172.16.1.1. The subnet mask is in the range of 1 to 31. |
· Security configuration
The IPS feature protects the enterprise information system and network against attacks.
IPS requires a license. Purchase and install an IPS license.
Support for this feature depends on the device model.
· WAN acceleration
This feature guarantees the transmission of important internal data when the bandwidth is limited.
Support for this feature depends on the device model.
· Flow control
You can set the expected bandwidth of a WAN interface and the maximum bandwidth and guaranteed bandwidth for each application.
Set the expected bandwidth based on the bandwidth assigned by the service provider.
Support for this feature depends on the device model.
· Cloud manager server connection
The cloud manager server is a platform for managing security devices. It supports fast deployment of security device configurations, differentiated deployment of security capabilities, modification of device configurations, and visualization of device status.
Configure the domain name of the cloud manager server for the device to connect to the cloud manager server.
Support for this feature depends on the device model.
Transparent mode
This mode does not change the current network structure. The interfaces configured as WAN interface, LAN interface, and DMZ interface become Layer 2 interfaces. Table 7 describes the transparent mode configuration items.
Table 7 Transparent mode configuration items
Parameter |
Description |
WAN interface |
Select a WAN interface. |
LAN interface |
Select the interface that connects to the LAN. |
DMZ interface |
Select the interface that connects to the DMZ zone. |
Security configuration |
Enable IPS. Support for this feature depends on the device model. |
WAN acceleration |
Enable WAN acceleration. Support for this feature depends on the device model. |
Flow control |
Configure flow control parameters. Support for this feature depends on the device model. |
Cloud manager server connection |
Enable the cloud manager server connection, and enter the domain name and port number of the server to connect the device to the server. Support for this feature depends on the device model. |