Page 61 / 74
Scroll up to view Page 56 - 60
WF-2409
User Manual
Figure 4-48
4.7.3.
DMZ
DMZ opens all the ports of one computer, exposing the computer to the Internet. So it should
only be used for some special-purpose, especial for Internet online games. Using this function
you can select “DMZ” item and input IP address of DMZ host, then click “Save”. For the
purpose of security, we suggested that using “Virtual servicer” instead of “DMZ”.
Figure 4-49
4.7.4.
UPnP
The UPnP function supports load Application’s port forward record automatically. Select
60
Page 62 / 74
WF-2409
User Manual
“Enable” to enable this function.
Figure 4-50
4.8.
Security Setup
4.8.1.
IP/MAC bind
Figure 4-51
¾
Bind mode: define the bind mode ,you can select manually add, auto binding or
export/import TXT file of ARP.
¾
Rule Name: define name for this rule
¾
IP Address: define the address of binded IP
¾
MAC Address: define the address of binded MAC
¾
Interface: Select the binded Interface from LAN and WAN
61
Page 63 / 74
WF-2409
User Manual
4.8.2.
IP Filtering
Figure 4-52
¾
Status: the default is disable. The rules of “Internet access control” based on source IP,
port number and protocol.
¾
Description: describe IP Firewall list to tell from different IP Firewall lists.
¾
Rule: you can select permit or deny. The default is permit.
¾
Source Host: input the source IP address that you want to control. you can select “all
Host”,”Specific Host”,”Host subnet” or “HOST IP section”
¾
Destination Host: input the Destination IP address that you want to control. you can
select “all Host”,”Specific Host”,”Host subnet” or “HOST IP section”
¾
Templates: The templates item supplies several protocols. For example, if you have web
server within LAN, you can select the HTTP template then the router will input port
number 80 automatically
¾
Protocol and Port: If the rule has already existed in “Protocol Template”. You can select
appropriate item and apply it. Or you can input protocol type and port number manually,
click “add” button, then the item will displayed in the list.
Follow the following steps to set Internet Access Control:
62
Page 64 / 74
WF-2409
User Manual
1. You can select “enable” and click “Save” to enable “IP Address Filtering” function. This is
only the first step, you should continued to create appropriate rules for “IP Address Filtering”.
2. Input description information for current access control rule in the “Description” field. Input
IP address of host you want to restrict.
3. There are two items supplied, “Permit through the router for IP address listed, others are
denied” and “Deny through the router for IP address listed,others are permitted”, Select the
item you want, and click “Save” button.
4. If you want to delete certain item on the list, select appropriate item on the list, click “delete”
to delete it.
4.8.3.
MAC Filtering
Figure 4-53
¾
Status: the default is disable. You can filter wired users by enabling this function; thus
unauthorized users can not access the network.
¾
MAC address add mode: You can select Manual add or Import IP/MAC bind list
¾
Rule name: describe MAC Filter list to tell from different MAC Filter lists
¾
Rule: you can select permit or deny. The default is permit
¾
MAC address: input the MAC address that you want to control. The default format is
63
Page 65 / 74
WF-2409
User Manual
**-**-**-**-**-**
(
e.g.: 00-22-33-da-cc-bb
)
Follow the following steps to set MAC filter:
1. Enable MAC Filter, then select save.
2. Add MAC address you want to control in the “MAC address” field (the format is
**-**-**-**-**-**), then click “Add” button, and you will see the MAC address has displayed
in the MAC list. Or you can import IP/MAC bind list.
3. There are two items supplied, “Permit through the router for MAC address listed,others are
denied” and “Deny through the router for MAC address listed,others are permitted”, Select the
item you want, and click “Save” button.
4.8.4.
Domain Filtering
Figure 4-54
¾
Status: the default is disable. “Domain filter” is able to filter certain domain name such
as
www.sina.com
.
¾
Rule: you can select permit or deny. The default is permit.
¾
Source Host: input the source IP address that you want to control. you can select “all
Host”,”Specific Host”,”Host subnet” or “HOST IP section”
¾
Priority: define the priority of this Rule
¾
DNS Filter Key words: Input website name or Domain name in the “DNS Key Words”
64