Add IPv4 addresses to Firewall Cluster interfaces

Add an IPv4 address to a Firewall Cluster interface.

For more details about the product and how to configure features, click Help or press F1.

Steps

  1. In the navigation pane on the left, select Interfaces.
  2. Right-click a physical interface or VLAN interface and select New > IPv4 Address.
  3. Select the types of IP addresses that you want to add using the Cluster Virtual IP Address and Node Dedicated IP Address options.
    By default, both are selected. If the interface does not receive or send traffic that the Firewall examines, there is no need to define a Cluster Virtual IP address (CVI). We recommend adding a Node Dedicated IP address (NDI) for each network or subnetwork that is located behind the physical interface.
  4. To add a CVI, enter the IP address in the IPv4 Address field in the Cluster Virtual IP Address section.
    Tip: To resolve the IP address from a DNS name, right-click the field, then select Resolve From DNS Name.
  5. If the CVI is used for system communications and NAT is applied, define a contact address for the CVI.
    1. Enter the default contact address in one of the following ways:
      • In the Default field, enter the contact address.
      • Select Dynamic and define the translated IP address of this component.
    2. If components from some locations must use a different IP address for contact, click Exceptions and define the location-specific addresses.
  6. To add NDIs for the nodes, enter the IP address in the IPv4 Address field for each node in the Node Dedicated IP Address table.
    Tip: To resolve the IP address from a DNS name, right-click the field, then select Resolve From DNS Name.
  7. If the NDIs are used for system communications and NAT is applied, define a contact address for the NDIs.
    1. Double-click the node’s Contact Address cell.
    2. In the Default field, enter the contact address.
    3. (Optional) If components from some locations must use a different IP address for contact, click Add and define the location-specific addresses.
    4. Click OK.
  8. (Optional) In the Netmask field, change the automatically added netmask if necessary.
  9. Click OK.
    The IPv4 addresses are added to the interface.
  10. Click Save.
    Do not close the Engine Editor.

Next steps

Continue the configuration in one of the following ways:
  • Add other IP addresses.
  • Select system communication roles for interfaces.
  • Bind engine licenses to the Firewall Cluster elements.