TMS zl Management and Configuration Guide ST.1.1.100430

2-38
Initial Setup in Routing Mode
Configure Management Access Settings
If the module’s host switch is the default gateway, this VLAN is
typically the VLAN on which the host switch connects to the external
router. Make sure that the switch has an IP address on that VLAN.
For example, in Figure 2-15, the host switch connects to the external
router on VLAN99 (subnet 10.1.99.0/24). Both the host switch and the
external router have IP addresses on this subnet (10.1.99.98 on the
switch and 10.1.99.101 on the router). The TMS zl Module also has an
IP address, which you will configure in the next step.
Figure 2-15. Routing Internal-to-External Traffic through the Host Switch
If another core switch is the default gateway, this VLAN is typically
the VLAN on which the module’s host switch connects to the core
switch.
If necessary, configure the VLAN on the host switch so that the TMS zl
Module can reach the default gateway on the correct VLAN.
9. If the default gateway is on the VLAN you have already added to the
management-access zone, skip this step and continue with step 10. Oth-
erwise, complete this step.
a. Associate the VLAN on which the TMS zl Module connects to its
default gateway with a zone (often this is the External zone, which
provides special checks for traffic incoming from an untrusted net-
work).
Syntax: vlan <VLAN ID> zone <zone>
Associates a VLAN with a zone.
Replace <VLAN ID> with the number of a VLAN to
associate with the zone.
Replace <zone> with the name of a zone.