172 Example ConfigurationChapter 13Example ConfigurationIntroducing an up-and-running Barracuda NG Network Access Client environment involves severalcomponents, like global objects, trustzone settings, Access Control Service and gateway firewallconfiguration.This section presents an overview how simple an environment can be set up. For further details ofindividual parameters please refer to the appropriate sections.Beginning to use Barracuda NG Network Access Client does not necessarily require complex policyrule sets. Although rule sets will become more elaborated due to required exceptions, the sampleincludes only one policy within the rule set Local Machine.The client LAN has the IP-range 10.0.8.0/24, the protected servers are located in the network172.16.0.0/24. Additionally to the protected servers, one server acts as Microsoft Domain Controllerand as remediation server for updating the antivirus patterns. This server has the IP address172.16.0.10 - you need to grant access to this computer even for unknown or unhealthy clients.The other servers located within the server segment should be protected - for example access to theseservers should only be available for clients conforming to the corporate health policy.The health policy requires to have a client installed and the personal firewall to be enabled. In addition,the company uses Trend Micro antivirus products, so it is required to have the AV engine enabled andto receive regular anti-virus ipattern updates.Fig. 13–1 Example configuration – environment