Top
ServerView Resource Orchestrator Cloud Edition V3.3.0 Design Guide
FUJITSU Software

G.3.9 For Deploying Firewalls and Server Load Balancers (NS Appliance)

The default model configuration assumed by a sample script is given below.

Figure G.8 Standard Model Configurations of Sample Scripts (Firewall and Server Load Balancer: NS Appliance)


When a single NS appliance is used as both a firewall and server load balancer for 3-tier models in a system, firewall rulesets are used together with the server load balancer rulesets.

The names of the sample rulesets provided by Resource Orchestrator are listed below.

For deploying NS Appliances as server load balancers

SLB_with_SSL-ACC--NSApp1

For systems that use NS appliances as server load balancers (with an SSL accelerator)

Adaptive model configuration: All standard models

LAN Ports to be Used

The port is determined by the sample script (FW_of_sys_inc_SLB_or_not--NSAppn).

SLB_without_SSL-ACC--NSApp1

For systems that use NS appliances for server load balancers (without an SSL accelerator).

Adaptive model configuration: All standard models

LAN Ports to be Used

The port is determined by the sample script (FW_of_sys_inc_SLB_or_not--NSAppn).

n: Number between 1 - 2


For deploying NS Appliances as firewalls

FW_of_sys_inc_SLB_or_not--NSApp1

For a system that uses NS appliance as a firewall with a 3-tier model

Adaptive model configuration: Standard Model 2

LAN Ports to be Used
  • For Public LANs (Customer Firewall Side)

    LAN0.0

    Point

    It is necessary to configure the VLAN interface of the arbitrary VLAN ID for LAN0.0 beforehand.

  • For Public LANs (L2 Switch Side)

    LAN0.1

  • For the Admin LAN

    LAN0.3

FW_of_sys_inc_SLB_or_not--NSApp2

For a system that uses NS appliance as a firewall with a 3-tier model

Adaptive model configuration: Standard Model 1

LAN Ports to be Used
  • For Public LANs (Center Switch Side)

    LAN0.0

    Point

    When using the sample scripts without making any changes, it is necessary to configure the VLAN interface of the VLAN ID for LAN0.0 as "100" beforehand.

  • For Public LANs (L2 Switch Side)

    LAN0.1

  • For the Admin LAN

    LAN0.3