Chapter 3: cOS Stream Configuration

[Tip] Tip: Upgrade to the latest cOS Stream version

A new 500 Series unit may not have the very latest cOS Stream version pre-installed. After the initial configuration described in this section, it is recommended to upgrade to the latest available version. The steps for upgrading are described in the separate cOS Stream Administration Guide.

3.1. The NetShield 500 Series Default Configuration

This section describes the predefined entries in the default cOS Stream configuration that are unique to the NetShield 500 Series.

Ethernet Interface DHCP settings

The NetShield 500 Series appliance comes with a default cOS Stream configuration with the following settings on the Ethernet interfaces:

  • The G1 interface has a DHCP server enabled. This means connecting clients will be automatically allocated an IP address by cOS Stream, providing the client has DHCP enabled on its connecting interface. Clients will also be allocated DNS server addresses if cOS Stream itself has received them from an ISP.

  • The G4 and X1 interfaces both have a DHCP client enabled. This means they can be automatically assigned an IP address if either is connected to an ISP. DNS server addresses can also be received by cOS Stream.

The Predefined IP Rule Set

The default configuration also contains a predefined IP rule set that allows traffic to flow from the G1 interface and its network to any other interfaces. The traffic will have NAT translation applied using the outgoing interface's IP as the source address. This means that protected clients on G1 will have predefined access to the Internet through X1, or alternatively G4 if X1 is not available.

The Predefined all-nets Routes

There is a predefined all-nets route for both the G4 and X1 interfaces. The X1 route has a lower value for its Metric property which means it will take precedence over G4 for Internet traffic if both are connected to an ISP. However, should the X1 connection become unavailable, cOS Stream will automatically route all-nets traffic through G4, providing redundancy.

Changing the Default Configuration

Note that there are no restrictions on how cOS Stream is configured in the NetShield 500 Series product or how the Ethernet interfaces are used. The administrator is free to change or delete any of the default configuration components.