Page 66 / 109 Scroll up to view Page 61 - 65
56
z
gt
: any source IP address that is numerically greater
than the specified address.
z
gteq:
any source IP address that is numerically
greater than or equal to the specified address.
z
eq
: any source IP address that is numerically equal to
the specified address.
z
neq
: any source IP address that is not equal to the
specified address.
z
range
: any source IP address that is within the
specified range, inclusive.
z
out of range
: any source IP address that is outside
the specified range.
z
self
: the IP address of the MT800 interface on which
this rule takes effect.
z
Dest IP Address
:
IP address criteria for the destination
computer(s) (i.e., the IP address of the computer to which
the packet is being sent). In addition to the options
described for the Src IP Address field, the following option
is available:
z
bcast:
specifies that the rule will be invoked for any
packets sent to the broadcast address for the
receiving interface. When you select this option, you
do not need to specify the address, so the address
fields are dimmed.
z
Protocol
: IP protocol criteria that must be met for rule to be
invoked. You can specify that packets must contain the
selected protocol (
eq
), that they must not contain the
specified protocol (
neq
), or that the rule can be invoked
regardless of the protocol (
any
). TCP, UDP, and ICMP are
commonly used IP protocols; others can be identified by
Page 67 / 109
57
number, from 0-255, as defined by the Internet Assigned
Numbers Authority (IANA).
z
Apply Inspection
: If this option is enabled, then
Stateful
Filtering
is performed and the rule is also applied in the
other direction on the given interface during an IP session.
z
Source Port
: Port number criterion for the computer(s)
from which the packet originates. This field will be dimmed
(unavailable for entry) unless you have selected TCP or
UDP as the protocol. See the description of Src IP Address
for the selection options.
z
Dest. Port
: Port number criterion for the destination
computer(s) (i.e., the port number of the type of computer
to which the packet is being sent). This field will be dimmed
(unavailable for entry) unless you have selected TCP or
UDP as the protocol. See the description of Src IP Address
for the selection options.
z
TCP Flag
: Specifies whether the rule should apply only to
TCP packets that contain the synchronous (
SYN
) flag, or to
all TCP packets. This field will be dimmed (unavailable for
entry) unless you selected TCP as the protocol.
z
ICMP Type
: Specifies whether the value in the type field in
ICMP packet headers will be used as a criterion. The value
can be any decimal value from 0-255. You can specify that
the value must equal (eq) or not equal (neq) to the
specified value, or you can select
any
to enable the rule to
be invoked on all ICMP packets. This field will be dimmed
(unavailable for entry) unless you specify ICMP as the
protocol.
z
ICMP Code
: Specifies whether the value in the code field
in ICMP packet headers will be used as a criterion. The
code value can be any decimal value from 0-255. You can
Page 68 / 109
58
specify that the value must equal (
eq
) or not equal (
neq
)
the specified value, or you can select
any
to enable the
rule to be invoked on all ICMP packets. This field will be
dimmed (unavailable for entry) unless you specify ICMP as
the protocol.
z
IP Frag Pkt
: Determines how the rule applies to IP packets
that contain fragments. You can choose from the following
options:
z
Yes
:
The rule will be applied only to packets that
contain fragments.
z
No
:
The rule will be applied only to packets that do not
contain fragments
z
Ignore
: (Default) The rule will be applied to packets
whether or not they contain fragments, assuming that
they match the other criteria.
z
IP Option Pkt
: Determines whether the rule should apply
to IP packets that have options specified in their packet
headers.
z
Yes
:
The rule will be applied only to packets that
contain header options.
z
No
: The rule will be applied only to packets that do not
contain header options.
z
Ignore
:
(Default) The rule will be applied to packets
whether or not they contain header options, assuming
that they match the other criteria.
z
Packet Size
: Specifies that the IP Filter rule will take affect
only on packets whose size in bytes matches this criterion.
(
lt
= less than,
gt
= greater than,
lteq
= less than or equal
to.)
Page 69 / 109
59
When you are done selecting criteria, ensure that the
Enable
button is selected at the top of the page, and then click the
Submit
button at the bottom of the page. After a confirmation page displays,
the IP Filter -Configuration page will redisplay with the new rule
showing in the table.
III.
Save
z
Click the
Submit
button to save the settings in the RAM.
z
To save these configuration changes permanently, enter
the
Save & Reboot
page, select
Save
and click
Submit
button to save new settings.
4.14
QoS
Various applications that operated in MT800 have different
requirement of priority level. Different applications will be classified
by MT800 according to the different requirement of priority level, and
the different priority level will be provided to each level with mode of
Diffserv. MT800 sets the individual queue for each priority level, and
then controls the output of each queue of priority.
Click the
QoS
of
Advanced Function
in the Wizard Column to
set the priority level to the applications that operated in MT800.
The available options of QoS include: Application, TOS, Diffserv,
802.1p, and VLAN Tag.
Page 70 / 109
60
I.
No QoS
Figure 4-26
QoS-No QoS
II.
Application
Some
special
application,
such
as
network
game,
videoconference, network phone, will transmit the audio, video and
data synchronously. So you can set the priority level to the different
type of traffic. So the traffic with higher priority will be processed
firstly while the network jammed.
Figure 4-27
QoS-Application

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top