Page 46 / 106 Scroll up to view Page 41 - 45
46
HITRON BVW-3653 USER’S GUIDE
FIREWALL
±
Deny the devices on the list access to the BVW-3653 and the network (in which
case all other devices can access the network)
or
±
Allow the devices on the list to access the network (in which case no other
devices can access the network)
4.1.5
IP FILTERING
IP filtering allows you to prevent computers on the LAN from sending certain types of
data to the WAN. You can use this to prevent unwanted outgoing communications.
Specify the IP address of the computer on the LAN from which you want to prevent
communications, and specify the port range of the communications you want to
prevent. The BVW-3653 discards outgoing data packets that match the criteria you
specified.
4.1.6
PORT FORWARDING
Port forwarding allows a computer on your LAN to receive specific communications
from the WAN. Typically, this is used to allow certain applications (such as gaming)
through the firewall, for a specific computer on the LAN. Port forwarding is also
commonly used for running a public HTTP server from a private network.
You can set up a port forwarding rule for each application for which you want to open
ports in the firewall. When the BVW-3653 receives incoming traffic from the WAN
with a destination port that matches a port forwarding rule, it forwards the traffic to the
LAN IP address and port number specified in the port forwarding rule.
NOTE:
For information on the ports you need to open for a particular application,
consult that application’s documentation.
4.1.7
PORT TRIGGERING
Port triggering is a means of automating port forwarding. The BVW-3653 scans
outgoing traffic (from the LAN to the WAN) to see if any of the traffic’s destination
ports match those specified in the port triggering rules you configure. If any of the
ports match, the BVW-3653 automatically opens the incoming ports specified in the
rule, in anticipation of incoming traffic.
4.1.8
DMZ
In networking, the De-Militarized Zone (DMZ) is a part of your LAN that has been
isolated from the rest of the LAN, and opened up to the WAN. The term comes from
the military designation for a piece of territory, usually located between two opposing
forces, that is isolated from both and occupied by neither.
Page 47 / 106
47
HITRON BVW-3653 USER’S GUIDE
FIREWALL
4.2
THE FIREWALL OPTIONS SCREEN
Use this screen to turn firewall features on or off. You can enable or disable the BVW-
3653’s intrusion detection system, and allow or prevent responses to ICMP requests
from the WAN.
Click
Firewall
>
Firewall Options
. The following screen displays.
FIGURE 15:
The Firewall > Firewall Options Screen
The following table describes the labels in this screen.
4.3
THE MAC FILTERING SCREEN
Use this screen to configure Media Access Control (MAC) address filtering on the
LAN.
NOTE:
To configure MAC address filtering on the wireless network, see The Access
Control Screen on page 78.
You can set the BVW-3653 to allow only certain devices to access the BVW-3653
and the network, or to deny certain devices access.
TABLE 15:
The Firewall > Firewall Options Screen
Intrusion Detection
System
±
Select this to turn the intrusion detection system off.
±
Deselect this to turn the intrusion detection system
on.
Ping on WAN Interface
±
Select this to prevent responses to ICMP requests
originating from the WAN.
±
Select this to allow responses to ICMP requests
originating from the WAN.
Apply
Click this to save your changes to the fields in this
screen.
Cancel
Click this to return the fields in this screen to their last-
saved values without saving your changes.
Help
Click this to see information about the fields in this
screen.
Page 48 / 106
48
HITRON BVW-3653 USER’S GUIDE
FIREWALL
NOTE:
To see a list of all the computers connected to the BVW-3653 on the LAN,
click the
Connected Computers
button in the
Firewall
>
IP Filtering
,
Forwarding
,
Port Triggering
or
DMZ
screens.
Click
Firewall
>
MAC Filtering
. The following screen displays.
FIGURE 16:
The Firewall > MAC Filtering Screen
The following table describes the labels in this screen.
TABLE 16:
The Firewall > MAC Filtering Screen
MAC Filter Options
The MAC Filter
Table
Use this field to control whether the BVW-3653 performs
MAC filtering.
±
Select
Allow-All
to turn MAC filtering off. All devices
may access the BVW-3653 and the network.
±
Select
Allow
to permit only devices with the MAC
addresses you set up in the
Allow Table
to access the
BVW-3653 and the network. All other devices are
denied access.
±
Select
Deny
to permit all devices except those with the
MAC addresses you set up in the
Deny Table
to
access the BVW-3653 and the network. The specified
devices are denied access.
Allow Table (up to 16 Items)
#
This displays the index number assigned to the permitted
device.
Page 49 / 106
49
HITRON BVW-3653 USER’S GUIDE
FIREWALL
Device Name
This displays the name you gave to the permitted device.
MAC Address
This displays the MAC address of the permitted device.
Delete
Select a permitted device’s radio button (
) and click this
to remove the device from the list. The device may no
longer access the BVW-3653 and the network.
NOTE:
Make sure you do not delete your management
computer from the list; if you do so, you will need
to log back in from another computer, or reset the
BVW-3653.
Deny Table (up to 16 Items)
Device Name
This displays the name you gave to the denied device.
MAC Address
This displays the MAC address of the denied device.
Delete
Select a denied device’s radio button (
) and click this to
remove the device from the list. The device may now
access the BVW-3653 and the network.
Auto-Learned LAN Devices
Device Name
This displays the name of each network device that has
connected to the BVW-3653 on the LAN.
MAC Address
This displays the MAC address of each network device
that has connected to the BVW-3653 on the LAN.
Type
Use this field to specify the list to which you want to add
the device.
±
Select
Allow
to add the device to the
Allow Table
.
±
Select
Deny
to add the device to the
Deny Table
.
Manually-Added LAN Devices
Device Name
Enter the name to associate with a network device that
you want to permit or deny access to the BVW-3653 and
the network.
NOTE:
This name is arbitrary, and does not affect
functionality in any way.
MAC Address
Specify the MAC address of the network device that you
want to permit or deny access to the BVW-3653 and the
network.
Type
Use this field to specify the list to which you want to add
the device.
±
Select
Allow
to add the device to the
Allow Table
.
±
Select
Deny
to add the device to the
Deny Table
.
Add
Click this to add the device to the list you specified.
TABLE 16:
The Firewall > MAC Filtering Screen (continued)
Page 50 / 106
50
HITRON BVW-3653 USER’S GUIDE
FIREWALL
4.4
THE IP FILTERING SCREEN
Use this screen to configure IP filtering. You can turn IP filtering on or off and
configure new and existing IP filtering rules.
Click
Firewall
>
IP Filtering
. The following screen displays.
FIGURE 17:
The Firewall > IP Filtering Screen
The following table describes the labels in this screen.
Cancel
Click this to clear the
Manually-Added LAN Devices
fields.
Apply
Click this to save your changes to the fields in this screen.
Cancel
Click this to return the fields in this screen to their last-
saved values without saving your changes.
Help
Click this to see information about the fields in this screen.
TABLE 17:
The Firewall > IP Filtering Screen
All IP Filtering Rules
Use this to turn IP filtering on or off.
±
Deselect the checkbox to enable IP filtering.
±
Select the checkbox to disable IP filtering (default).
NOTE:
You can add, edit or delete IP filtering rules only
when this checkbox is deselected.
Select
Select an IP filtering rule’s radio button (
) before
clicking
Edit
or
Delete
.
#
This displays the arbitrary identification number
assigned to the IP filtering rule.
Application Name
This displays the arbitrary name you assigned to the
rule when you create it.
TABLE 16:
The Firewall > MAC Filtering Screen (continued)

Rate

4.5 / 5 based on 2 votes.

Popular Hitron Technologies Models

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top