Network interfaces
supported
|
For the Screen: [The Screen can support up to 15 stealth interfaces
at one time.Stealth configurations do not support ATM, FDDI, token ring, or the
use of proxies. SunScreen HA in routing mode does not support FDDI, token ring, ATM,
Gigabit Ethernet, or failover of IKE-based IPsec connections]
-
For SPARC and UltraSPARC systems in routing mode:
-
10-Mbps or 100-Mbps Ethernet interfaces (le, qe, hme, be, qfe, pnet)
-
Gigabit Ethernet (ge) interfaces
-
Token Ring interfaces (trp)
-
ATM (155 and 622 Mbps) in LAN emulation mode (lane) or classic
IP mode (ba)
-
FDDI (nf), or PCI-based Ethernet cards
-
For SPARC and UltraSPARC systems in stealth mode: 10-Mbps,
100-Mbps, Fast Ethernet, or Gigabit Ethernet interfaces
-
High availability requires that the two machines be connected
by means of a nonswitching hub. [Some switches,
including Alteon, Radware's Fireproof, and Foundry's ServerIron, can be configured
to work with SunScreen HA clusters. Each Screen is set up as an individual
Screen, with different IP addresses, and no interconnect. You can use as
many Screens as the switch supports. Note that because SunScreen is a stateful
firewall, TCP connections do not failover. ]
For the Administration Station: [A remote Administration Station can connect directly to a Screen only
through an Ethernet local area network (LAN) or a fiber distributed data interface
(FDDI). ]
-
For SPARC systems: 10-Mbps or 100-Mbps Ethernet
interfaces (le, qe, hme, be, qfe), or FDDI, or PCI-based Ethernet cards.
An Administration Station can connect to the Screen by an asynchronous
transfer mode (ATM) or Token Ring LAN, but only after it is connected directly
to the network by way of an Ethernet or FDDI connection first.
|