Cisco Cisco Email Security Appliance C160 Mode D'Emploi

Page de 1094
 
33-10
Cisco AsyncOS 8.0.1 for Email User Guide
 
Chapter 33      Advanced Network Configuration
  Virtual Local Area Networks (VLANs)
VLANs can be created on all “Data” and “Management” ports, including fiber optic data ports available 
on some Cisco X10x, C3x, and C6x appliances.
VLANs can be used with NIC pairing (available on paired NICs) and with Direct Server Return (DSR). 
 illustrates a use case showing how two mail servers unable to communicate directly due to 
VLAN limitations can send mail through the Cisco appliance. The blue line shows mail coming from the 
sales network (VLAN1) to the appliance. The appliance will process the mail as normal and then, upon 
delivery, tag the packets with the destination VLAN information (red line).
Figure 33-2
Using VLANs to Facilitate Communication Between Appliances
Managing VLANs
You can create, edit and delete VLANs via the 
etherconfig
 command. Once created, a VLAN can be 
configured via the Network -> Interfaces page or the 
interfaceconfig
 command in the CLI. Remember 
to commit all changes.
Creating a New VLAN via the etherconfig Command
In this example, two VLANs are created (named VLAN 31 and VLAN 34) on the Data 1 port:
IronPort appliance configured 
VLAN
“Switch” 
Internet
 “Router”
or
Data 2 interface
Sales server
Finance server
VLAN1
VLAN2
VLAN3
for VLAN1, VLAN2, VLAN3
mail3.example.com> etherconfig
Choose the operation you want to perform:
- MEDIA - View and edit ethernet media settings.
- PAIRING - View and configure NIC Pairing.
- VLAN - View and configure VLANs.
- LOOPBACK - View and configure Loopback.