Setting up the network
68 Avaya VPNmanager Configuration Guide Release 3.7
The following section describes the six network zones.
Public. - The public network interface provides connection to the Internet, usually by way of a
wide area network (WAN). When VPNmanager is used, the security gateway must be
configured with a static IP address. Only one public zone is configured on the security gateway
and the configuration for this zone cannot be changed from VPNmanager.
Public-backup. - The public-backup network interface is used in conjunction with the Failover
function on some security gateway models, see Failover on page 226 to configure failover. If a
public-backup network interface is configured, and the public primary network interface cannot
reach the Internet, the failover module deactivates the public primary interface, activates the
public-backup interface, and then redirects all encrypted traffic to this link. Only one
public-backup zone can be configured on the security gateway.
Note:
Note: If the public zone and the public-backup zone are both configured, only one zone
can operate at a given time.
To have the interface automatica lly revert to public, you can configure the Idle Timer Settings.
When you enable the idle timer, if no VPN or other traffic flows through the public-backup in the
configured amount of time, the public primary interface is automaticall y rees t a blished . If t he idl e
timer is enabled, select Ignore Non-VPN Traffic if you do not want non-VPN traffic to reset the
idle timer. Only one public-backup zone can be configured on the security gateway.
Ethernet2 NA NA Unused
Public backup
Private
Semiprivate
DMZ
Management
Unused
Public backup
Private
Semiprivate
DMZ
Management
Ethernet3
to
Ethernet5
NA NA Unused
Public backup
Private
Semiprivate
DMZ
Management
Unused
Public backup
Private
Semiprivate
DMZ
Management
Table 6: Network zones (continued)
Media
type SG5 and
SG5X SG200 SG203 SG208
2 of 2