To assign an IP address to the interface, select the
IPv4 tab, click
Add in
the IP section, and enter the IP address and network mask to assign to
the interface, for example 203.0.113.23/24.
To enable you to ping the interface, select , expand the
Management Profile
drop-down, and select
New Management Profile.
Enter a
Name for the profile, select
Ping and then click
OK.
To save the interface configuration, click
OK.
Configure the interface that connects to your internal network.
In this example, the interface connects to a network segment that uses
private IP addresses. Because private IP addresses cannot be routed
externally, you have to configure
NAT.
Select and select the interface you want to configure. In this
example, we are configuring Ethernet1/15 as the internal interface our
users connect to.
Select
Layer3 as the
Interface
Type.
On the
Config tab, expand the
Security Zone drop-down and select
New Zone. In the Zone dialog, define a
Name for new zone, for example Users, and
then click
OK.
Select the same Virtual Router you used previously, default in this
example.
To assign an IP address to the interface, select the
IPv4 tab, click
Add in
the IP section, and enter the IP address and network mask to assign to
the interface, for example 192.168.1.4/24.
To enable you to ping the interface, select the management profile that
you just created.
To save the interface configuration, click
OK.
Configure the interface that connects to your data center applications.
Make sure you define
granular zones to prevent
unauthorized access to sensitive applications or data and eliminate the
possibility of malware moving laterally within your data center.
Select the interface you want to configure.
Select
Layer3 from the
Interface
Type drop-down. In this example, we are configuring
Ethernet1/1 as the interface that provides access to your data center
applications.
On the
Config tab, expand the
Security Zone drop-down and select
New Zone. In the Zone dialog, define a
Name for new zone, for example Data Center
Applications, and then click
OK.
Select the same Virtual Router you used previously, default in this
example.
To assign an IP address to the interface, select the
IPv4 tab, click
Add in
the IP section, and enter the IP address and network mask to assign to
the interface, for example 10.1.1.1/24.
To enable you to ping the interface, select the management profile that
you created.
To save the interface configuration, click
OK.
(
Optional) Create tags for each zone.
Tags allow you to visually scan policy rules.
Select and
Add.
Select a zone
Name.
Select a tag
Color and click
OK.
Save the interface configuration.
Cable the NGFW.
Attach straight through cables from the interfaces you configured to the
corresponding switch or router on each network segment.
Verify that the interfaces are active.
Select Dashboard and verify that the interfaces you
configured show as green in the Interfaces widget.