4-4
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 4 Configuring Virtual Contexts
Creating Virtual Contexts
Interface Mode Choose the topology that reflects the relationship of the selected ACE virtual context to the
real servers in the network:
• Routed—The ACE virtual context acts as a router between the client-side network and
the server-side network. In this topology, every real server for the application must be
routed through the ACE virtual context, either by setting the default gateway on each real
server to the virtual context server-side VLAN interface address, or by using a separate
router with appropriate routes configured between the ACE virtual context and the real
servers.
• Bridged—The virtual ACE bridges two VLANs—a client-side VLAN and a real-server
VLAN—on the same subnet using a bridged virtual interface (BVI). In this case, the real
server routing does not change to accommodate the ACE virtual context. Instead, the
virtual ACE transparently handles traffic to and from the real servers.
This field is read-only if configured for existing contexts.
Management IP Enter the IPv4 address that is to be used for remote management of the context. This address
must be a unique management IP address that is not used in another context. The DM does not
support duplicate management IP addresses in different contexts.
Note The Device Manager considers an interface as a management interface if it has a
management policy map associated with the VLAN interface. See the “Configuring
Virtual Context VLAN Interfaces” section on page 10-10.
Management Netmask Choose the subnet mask to apply to this IP address.
Alias IP Address Enter the IPv4 address of the alias associated with this interface.
Peer IP Address Enter the IPv4 address of the remote peer.
Access Permission Choose the source IP addresses that are allowed on the management interface as follows:
• Allow All—Allows all configured client source IP addresses on the management interface
as the network traffic matching criteria.
• Deny All—Denies all configured client source IP addresses on the management interface
as the network traffic matching criteria.
• Match—Displays the Match Conditions table, where you specify the match criteria that
the ACE is to use for traffic on the management interface.
Table 4-1 Virtual Context Configuration Attributes (continued)
Field Description
Comments to this Manuals