Binding an Interface to a Zone
Knowledge Base ID: KB4762
Version: 4.0
Published: 07 Oct 2008
Updated: 07 Oct 2008
Categories: . Firewall/IPSec_VPN
. ScreenOS

Synopsis:
Binding an Interface to a Zone

Solution:
Note: This article applies to ScreenOS 4.0 and higher.

To bind an interface to a zone, perform the following steps:

Note: This article only applies to interfaces that have not been bound to a zone.

Step one: Open the WebUI. For an example of how to access the WebUI, consult: KB4060 - Accessing Your NetScreen, SSG, or ISG Firewall Using the WebUI

Step two: From the ScreenOS options menu, click Network, and then click Interfaces.

Image of step two

Step three: From the interface table, choose the interface from which you wish to bind an interface, click Edit.

Note: For this example, we chose to edit the ethernet2 interface on a NetScreen-50. The NetScreen-5XP and the NetScreen-5XT only have four interfaces.

Image of step three

Step four: From the Zone Name drop-down menu, click to choose a zone.

Note: For this example, we chose the DMZ zone. The NetScreen-5XP and the NetScreen-5XT do not have a DMZ.

Image of step four

Step five: Click OK.

Image of step five

Note: Once an interface is bound to a zone, an IP address can be assigned to it. For more information on defining an IP on an interface, go to Defining an IP on an Interface.

Purpose:
Troubleshooting