No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Guide for Interworking Between HUAWEI CloudFabric Solution and Redhat OpenStack

Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring Security Policies on Firewalls

Configuring Security Policies on Firewalls

  1. Connect a firewall to a gateway. Generally, an Eth-Trunk interface is used and no configuration is required.
  2. Assign interfaces to security zones and configure a default security policy.
  3. Assign Virtual-if0 to the Untrust zone for diverting traffic between the public system and virtual systems on a firewall.
    [FW] interface Virtual-if api transform  // Enable the Virtual-if name conversion function. Otherwise, Virtual-if0 cannot be assigned to the Untrust zone.
    [FW] firewall zone untrust
    [FW-zone-untrust]add interface Virtual-if0
    [FW-policy-security] default action permit // Set the default security policy to permit.
    [FW] vsys enable   // Enable the virtual system function.
Updated: 2019-03-25

Document ID: EDOC1100072313

Views: 2348

Downloads: 15

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next