Page 151 / 211 Scroll up to view Page 146 - 150
147
Destination Port [port or port: port]:
Traffic with the particular set destination port or port in the set
port range is to be blocked from going through the router. Default is set port from port range: 1 –
65535.
Time Schedule:
Select or set exactly when the rule works. When set to “Always On”, the rule will
work all time; and also you can set the precise time when the rule works, like 01:00 of Sun to 19:00
of Friday. Or you can select the already set timeslot in “
Time Schedule
” during which the rule works.
And when set to “Disable”, the rule is disabled. See
Time Schedule
.
Log:
check the check-box to record the security log. To check the log, users can turn to
Security Log
.
Example:
For example, if there is an outgoing rule set as follows, then the 21 application between
source IP and destination IP will be blocked. Or exactly in the rule below, all traffic trying to access
FTP will be blocked.
Page 152 / 211
148
IP Filtering Incoming
Incoming IP Filtering is set by default to
block
all incoming traffic, but user can set rules to
forward
the specific incoming traffic.
Note:
1. The maximum number of entries: 32.
2. When LAN side firewall or firewall in WAN interface(s) is enabled, user can move here to add
allowing rules to pass through the firewall.
Click
Add
button to enter the exact rule setting page.
Filter Name:
A user-defined rule name. User can select simply from the list box for the application
for quick setup.
IP Version:
Select the IP Version, IPv4 or IPv6.
Protocol:
Set the traffic type (TCP/UDP, TCP, UDP, ICMP ) that the rule applies to.
Source IP address:
This is the Address-Filter used to allow or block traffic to/from particular IP
address(es) featured in the IP range.. If you leave empty, it means any IP address.
Source Port [port or port:port]:
The port or port range defines traffic from the port (specific
application)
or port in the set port range blocked to go through the router. Default is set port from
range 1 – 65535.
Destination IP address:
Traffic from LAN with the
particular traffic destination address specified in
the IP range is to be blocked from going through the router, similarly set as the Source IP address
above.
Destination Port [port or port : port]:
Traffic with the particular set destination port or port in the
set port range is to be blocked from going through the router. Default is set port from port range: 1 –
65535
Interfaces:
Check if the filter rule applies to all interfaces. User can base on need select interfaces
to make the rule take effect with those interfaces.
Page 153 / 211
149
Time Schedule:
Select or set exactly when the rule works. When set to “Always On”, the rule will
work all time; and also you can set the precise time when the rule works, like 01:00 of Sun to 19:00
of Friday. Or you can select the already set timeslot in “
Time Schedule
” during which the rule works.
And when set to “Disable”, the rule is disabled. See
Time Schedule
.
Log:
check the check-box to record the security log. To check the log, users can turn to
Security Log
.
Page 154 / 211
150
MAC Filtering
MAC Filtering is only effective on ATM PVCs configured in Bridged mode.
FORWARDED
means that all MAC layer frames will be
forwarded
except those matching with any
of the specified rules in the following table.
BLOCKED
means that all MAC layer frames will be
blocked
except those matching with any of the
specified rules in the following table.
By default, all MAC frames of the interface in Bridge Mode will be
forwarded
, you can check
Change
checkbox and then press
Change Policy
to change the settings to the interface.
For example, from above, the interface atm0.1 is of bridge mode, and all the MAC layer frames will
be
forward
, but you can set some rules to let some item matched the rules to be
blocked
.
Click
Add
button to add the rules.
Protocol type:
Select from the drop-down menu the protocol that applies to this rule.
Destination /Source MAC Address:
Enter the destination/source address.
Frame Direction:
Select the frame direction this rule applies, both LAN and WAN: LAN <=>WAN,
only LAN to WAN: LAN=>WAN, only WAN to LAN: WAN=>LAN.
WAN Interfaces:
Select the interfaces configured in Bridge mode.
Page 155 / 211
151
Blocking WAN PING
This feature is enabled to let your router not respond to any ping command when someone others
“Ping” your WAN IP.

Rate

4 / 5 based on 3 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top