Small-Scale Deployment Installation
R81.10.X Quantum Spark 1500, 1600, 1800, 1900, 2000 Appliances Centrally Managed Administration Guide|54
Setting the Management Server IP Address Behind a 3rd
Party NAT Device
When you use the
Management First
deployment scenario, the policy is prepared to be
fetched by appliances when they are configured.
During each appliance's first time configuration, the routeable IP address of the Security
Management Server is manually configured to create a first connection.
When SIC is established between the appliance and Security Management Server, the policy
is fetched for the first time. Then, an automatic mechanism calculates the routeable IP address
of the Security Management Server for the periodic policy fetch attempts. However, if the
Security Management Server is located behind a 3rd party NAT device, the automatic
mechanism fails.
In such cases, you can manually determine the routeable IP address of the Security
Management Server, not only for the first connection. You can request that the appliance
always attempt a connection with a manually configured IP address. You can configure this
from the First Time Configuration Wizard - Security Management Server Connection page
(select Always use this IP address and enter the IP address) or from the WebUI Home >
Security Management page.