Juniper Networks IDP 800 ユーザーズマニュアル

ページ / 68
Advanced Deployment Modes 
„ 
45
Chapter 8: Advanced Configuration
Router Mode
Figure 22 shows a sensor that is configured in bridge mode. Table 15 lists the 
advantages and disadvantages of bridge mode.
Figure 22:  Router Mode 
Table 15:  Advantages and Disadvantages of Router Mode 
Advantages
Disadvantages
„
Reliably responds to and prevents attacks
„
Connects IP networks with different 
address spaces
„
Affects Layer 3 IP networks (routing tables)
„
Interfaces cannot be used in stealth mode. 
The sensor itself can be the target of attacks.
Management 
Server 
IP 2.2.2.4
User Interface  
IP 2.2.2.5
Protected Machines
Hub or 
Switch
Firewall
eth2 
IP 192.168.0.1 
Forwarding Interface
Server1
IP 1.1.1.2
GW 1.1.1.1
Server2
IP 1.1.1.3
GW 1.1.1.1
Server3
IP 1.1.1.4
GW 1.1.1.1
IP 2.2.2.1
IP 192.168.0.2
IDP Sensor
Hub or 
Switch
eth3 
IP 1.1.1.1
Forwarding Interface
eth0 IP 2.2.2.7 
MGT Interface
Internet