Page 91 / 169 Scroll up to view Page 86 - 90
91
IP Filtering Incoming
Incoming IP Filtering is set by default to block all incoming traffic, but user can set rules to forward
the specific incoming traffic.
Note:
The maximum number of entries: 32.
When LAN side firewall or firewall in WAN interface(s) is enabled, user can move here to add allowing
rules to pass through the firewall.
Click Add button to enter the exact rule setting page.
Filter Name
: A user-defined rule name. User can select simply from the list box for the application for
quick setup.
IP Version:
Select the IP Version, IPv4 or IPv6.
Protocol
: Set the traffic type (TCP/UDP, TCP, UDP, ICMP ) that the rule applies to.
Source IP address
: This is the Address-Filter used to allow or block traffic to/from particular IP
address(es) featured in the IP range.. If you leave empty, it means any IP address.
Source Port [port or port:port]:
The port or port range defines traffic from the port (specific
application) or port in the set port range blocked to go through the router. Default is set port from range
1 – 65535.
Destination IP address
: Traffic from LAN with the particular traffic destination address specified in the
IP range is to be blocked from going through the router, similarly set as the Source IP address above.
Destination Port [port or port : port]:
Traffic with the particular set destination port or port in the set
port range is to be blocked from going through the router. Default is set port from port range: 1 –
65535
Interfaces:
Check if the filter rule applies to all interfaces. User can base on need select interfaces to
make the rule take effect with those interfaces.
Page 92 / 169
92
Time Schedule
: Select or set exactly when the rule works. When set to “Always On”, the rule will work
all time; and also you can set the precise time when the rule works, like 01:00-19:00 from Monday to
Friday. Or you can select the already set timeslot in “Time Schedule” during which the rule works. And
when set to “Disable”, the rule is disabled or inactive and
there will be an icon in the list table indicating the rule is inactive. See Time Schedule.
Log:
check the check-box to record the security log. To check the log, users can turn to Security Log.
MAC Filtering
MAC Filtering is only effective on ATM PVCs configured in Bridged mode.
FORWARDED means that all MAC layer frames will be forwarded except those matching with any of
the specified rules in the following table.
BLOCKED means that all MAC layer frames will be blocked except those matching with any of the
specified rules in the following table.
By default, all MAC frames of the interface in Bridge Mode will be forwarded, you can check
Change checkbox and then press Change Policy to change the settings to the interface.
For example, from above, the interface atm0.1 is of bridge mode, and all the MAC layer frames will be
forward, but you can set some rules to let some item matched the rules to be blocked.
Click Add button to add the rules.
Page 93 / 169
93
Protocol type
: Select from the drop-down menu the protocol that applies to this rule.
Destination /Source MAC Address
: Enter the destination/source address.
Frame Direction
: Select the frame direction this rule applies, both LAN and WAN: LAN <=>WAN, only
LAN to WAN
: LAN=>WAN, only WAN to LAN: WAN=>LAN.
WAN Interfaces
: Select the interfaces configured in Bridge mode.
Blocking WAN PING
This feature is enabled to let your router not respond to any ping command when someone others
“Ping” your WAN IP.
Time Restriction
A MAC (Media Access Control) address is the unique network hardware identifier for each PC on your
network’s interface (i.e. its Network Interface Card or Ethernet card). Using your router’s MAC Address
Filter function, you can configure the network to block specific machines from accessing your LAN
during the specified time.
This page adds time of day restriction to a special LAN device connected to the router. To Restrict
LAN device(s), please click Add button to add the device(s) from accessing internet under some set
time. To find out the MAC address of a window based PC, go to command window, and type
“ipconfig/all”.
Note
: The maximum entries configured: 32.
Click Add to add the rules.
Page 94 / 169
94
Host Label
: User-defined name.
MAC Address
: Enter the MAC address(es) you want to allow or block to access the router and LAN.
The format of MAC address could be
: xx:xx:xx:xx:xx:xx or xx-xx-xx-xx-xx-xx. For convenience, user
can select from the list box.
Days of the week
: Select the days of a week the rule takes efforts.
Start Time:
Enter the start time of each day in hh:mm format. Leaving it empty means 00:00.
End Time
: Enter the end time of each day in hh:mm format. Leaving it empty means 23:59.
Click Apply to confirm your settings. The following prompt window will appear to remind you of the
attention.
An example:
Here you can see that the user “child_use” with a MAC of 18:a9:05:04:12:23 is blocked to access the
router from 00:00 to 23:59 Monday through Friday.
If you needn’t this rule, you can check the box, press Remove, it will be OK.
URL Filter
URL (Uniform Resource Locator – e.g. an address in the form of http://www.abcde.com or
http://www.example.com) filter rules allow you to prevent users on your network from accessing
particular websites by their URL. There are no pre-defined URL filter rules; you can add filter rules to
meet your requirements.
Note:
URL Filter rules apply to both IPv4 and IPv6 sources.
But in Exception IP Address part, user can click
to set the exception IP address(es) for IPv4
and IPv6 respectively.
Page 95 / 169
95
Keywords Filtering
: Allow blocking against specific keywords within a particular URL rather than
having to specify a complete URL (e.g.to block any image called “advertisement.gif”). When enabled,
your specified keywords list will be checked to see if any keywords are present in URLs accessed to
determine if the connection attempt should be blocked. Please note that the URL filter blocks web
browser (HTTP) connection attempts using port 80 only.
Domains Filtering
: This function checks the whole URL address but not the IP address against your
list of domains to block or allow. If it is matched, the URL request will either be sent (Trusted) or
dropped (Forbidden).
Restrict URL Features
: Click Block Java Applet to filter web access with Java Applet components.
Click Block ActiveX to filter web access with ActiveX components. Click Block Cookie to filter web
access with Cookie components. Click Block Proxy to filter web proxy access.
Exception IP Address: You can input a list of IP addresses as the exception list for URL filtering. These
IPs will not be covered by the URL rules.
Time Schedule
: Select or set exactly when the rule works. When set to “Always On”, the rule will work
all time; and also you can set the precise time when the rule works, like 01:00-19:00 from Monday to
Friday. Or you can select the already set timeslot in “Time Schedule” during which the rule works. And
when set to “Disable”, the rule is disabled. See Time Schedule.
Log
: Select Enable for this option if you will like to capture the logs for this URL filter policy. To check
the log, users can turn to Security Log.
Keywords Filtering
Note
: Maximum number of entries: 32. Click
to add the keywords.
Enter the Keyword, for example image, and then click Add.

Rate

4 / 5 based on 1 vote.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top