Page 91 / 155 Scroll up to view Page 86 - 90
LTE TDD B2268H
User Guide
10 Firewall
Issue 01 (2014-01-15)
Copyright © Huawei Technologies Co., Ltd.
84
Step 3
Limit who can access your LTE Device.
Step 4
Don't enable any local service (such as Telnet or FTP) that you don't use. Any enabled service
could present a potential security risk. A determined hacker might be able to find creative ways
to misuse the enabled services to access the firewall or the network.
Step 5
For local services that are enabled, protect against misuse. Protect by configuring the services to
communicate only with specific peers, and protect by configuring rules to block packets for the
services at specific interfaces.
Step 6
Keep the firewall in a secured (locked) room.
----End
10.6.2 Security Considerations
Incorrectly configuring the firewall may block valid access or introduce security risks to the LTE Device
and your protected network. Use caution when creating or deleting firewall rules and test your rules after
you configure them.
Consider these security ramifications before creating a rule:
Step 1
Does this rule stop LAN users from accessing critical resources on the Internet? For example, if
IRC is blocked, are there users that require this service?
Step 2
Is it possible to modify the rule to be more specific? For example, if IRC is blocked for all users,
will a rule that blocks just certain users be more effective?
Step 3
Does a rule that allows Internet users access to resources on the LAN create security
vulnerability? For example, if FTP ports (TCP 20, 21) are allowed from the Internet to the LAN,
Internet users may be able to connect to computers with running FTP servers.
Step 4
Does this rule conflict with any existing rules?
----End
Once these questions have been answered, adding rules is simply a matter of entering the
information into the correct fields in the web configurator screens.
Page 92 / 155
LTE TDD B2268H
User Guide
11 MAC Filter
Issue 01 (2014-01-15)
Copyright © Huawei Technologies Co., Ltd.
85
11
MAC Filter
11.1 Overview
This chapter discusses MAC address filtering.
You can configure the LTE Device to permit access to clients based on their MAC addresses in
the
MAC Filter
screen. This applies to wired and wireless connections.
11.1.1 What You Need to Know
Every Ethernet device has a unique MAC (Media Access Control) address. The MAC address
is assigned at the factory and consists of six pairs of hexadecimal characters, for example,
00:A0:C5:00:00:02. You need to know the MAC address of the devices to configure this screen.
11.2 The MAC Filter Screen
Use the
MAC Filter
screen to allow wireless and LAN
client’s
access to the LTE Device.
To
change your LTE Device's MAC filter settings, click
Security
>
MAC Filter
. The screen
appears as shown.
Page 93 / 155
LTE TDD B2268H
User Guide
11 MAC Filter
Issue 01 (2014-01-15)
Copyright © Huawei Technologies Co., Ltd.
86
Figure 11-1
Security > MAC Filter
The following table describes the labels in this menu.
Table 11-1
Security > MAC Filter
LABEL
DESCRIPTION
MAC Address
Filter
Select
Enable
to activate MAC address filtering.
Set
This is the index number of the MAC address.
Allow
Select
Allow, to
permit access to the LTE Device. MAC addresses not
listed will be denied access to the LTE Device.
If you clear this, the
MAC Address
field for this set clears.
MAC Address
Enter the MAC addresses of the wireless station and LAN devices that
are allowed access to the LTE Device in these address fields. Enter the
MAC addresses in a valid MAC address format, that is, six hexadecimal
character pairs, for example, 12:34:56:78:9a:bc.
Apply
Click
Apply
to save your changes.
Cancel
Click
Cancel
to restore your previously saved settings.
Page 94 / 155
LTE TDD B2268H
User Guide
12 Parental Control
Issue 01 (2014-01-15)
Copyright © Huawei Technologies Co., Ltd.
87
12
Parental Control
12.1 Overview
Parental control allows you to block web sites with the specific URL. You can also define time
periods and days during which the LTE Device performs parental control on a specific user.
12.2 The Parental Control Screen
Use this screen to enable parental control, view the parental control rules and schedules. Click
Security > Parental Control
to open the following screen.
Figure 12-1
Security > Parental Control
The following table describes the fields in this screen.
Table 12-1
Parental Control > Parental Control
LABEL
DESCRIPTION
Parental Control
Select
Enable
to activate parental control.
Add new PCP
Click this if you want to configure a new parental control rule.
#
This shows the index number of the rule.
Status
This indicates whether the rule is active or not.
A yellow bulb signifies that this rule is active. A gray bulb signifies that
this rule is not active.
Page 95 / 155
LTE TDD B2268H
User Guide
12 Parental Control
Issue 01 (2014-01-15)
Copyright © Huawei Technologies Co., Ltd.
88
LABEL
DESCRIPTION
PCP Name
This shows the name of the rule.
Home Network
User (MAC)
This shows the MAC address of the LAN user's computer to which this
rule applies.
Internet Access
Schedule
This shows the day(s) and time on which parental control is enabled.
Network Service
This shows whether the network service is configured. If not,
None
will
be shown.
Website Block
This shows whether the website block is configured. If not,
None
will be
shown.
Modify
Click the
Edit
icon to go to the screen where you can edit the rule.
Click the
Delete
icon to delete an existing rule.
Add
Click
Add
to create a new schedule.
Apply
Click
Apply
to save your changes back to the LTE Device.
12.2.1 Add/Edit a Parental Control Rule
Click
Add new PCP
in the
Parental Control
screen to add a new rule or click the
Edit
icon
next to an existing rule to edit it. Use this screen to configure a restricted access schedule and/ or
URL filtering settings to block the users on your network from accessing certain web sites.

Rate

4 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top