Echo EN55022 manual Issue 1.0 04 December 1997 Page 54

Page 54

Ports can be given a specific value or the user can use wildcards to pass all values. Various services use a specific port number e.g. Telnet uses Port 23, FTP uses port 21. RFC 1700 gives a list of standard port values.

G.3.1 Examples

If 130.140.5.10 wishes to be able to Telnet to 130.140.6.32, but does not wish 130.140.6.32 to be able to Telnet back to him the following line should be used:

SRC ADDR

SRC MASK

DEST ADDR

DEST MASK

PROT

S.PRT

D.PRT

RSL

130.140.5.10

FFFFFFFF

130.140.6.32

FFFFFFFF

TCP

ALL

23

PAS

When 130.140.5.10 initiates a connection his packet will include the following information:

IP Destination

130.140.6.32

IP Source

130.140.5.10

Protocol

TCP

Port Destination

23

Port Source

1024

The key to this is the source port that will be assigned by the system. These numbers usually start at 1024 and are incremented each time a new TCP connection is made.

If the other machine 130.140.6.32 initiates the connection then the reply coming from 130.140.5.10 would have the following information.

IP Destination

130.140.6.32

IP Source

130.140.5.10

Protocol

TCP

Port Destination

1024

Port Source

23

You should note that the source and destination ports are now swapped. The first packet from 130.140.6.32 will get to the other machine. However his reply will fail when checked with the filter because the destination port is not 23.

If you wanted only these two machines to be able to telnet to each other and either machine to initiate the connection then you would need two lines in the filter table.

SRC ADDR

SRC MASK

DEST ADDR

DEST MASK

PROT

S.PRT

D.PRT

RSL

130.140.5.10

FFFFFFFF

130.140.6.32

FFFFFFFF

TCP

ALL

23

PAS

130.140.5.10

FFFFFFFF

130.140.6.32

FFFFFFFF

TCP

23

ALL

PAS

Echo LANlink Router Option User Manual

Issue 1.0 04 December 1997 Page 54 of 59

Image 54
Contents Page 5SXLANlink Contents Issue 1.0 04 December 1997 Page 4 Glossary Introduction Linking two LANs togetherFunctional Overview Typical ApplicationsRestrictive Firewall Example Login USE and ConfigurationRouter Configuration Supervisor Terminal Requirements Default terminal VT 100/220/320/420. OK y or n?SUN ReturnFalco Sunview WYSE50 Supported Terminal TypesRouter Management Router Management Screen General Keyboard ConventionsEntering a Parameter Multiplexer Management Megabit E1 MultiplexerClearing the Configuration back to Factory Default System Status8 D/I Remote Alarm Remote AlarmMain Link High BIT Error Rate Main Link Carrier LossRouter WAN Link Status Installation Opening the MultiplexerInstalling the Router Option Internal Link LK13Front Panel LEDs TestingData Connections LED LabelQuick Configuration Transmit IP RIP IPX ConfigurationReceive IP RIP IP BroadcastReceive IPX SAP Receive IPX RIPTransmit IPX RIP Transmit IPX SAPRouter Menu Options Unit StatusParameter Description Options Traffic Analysis IP Routing TableParameter Description IP ARP TableNode IPX RIP TableIPX Network HopsIPX SAP Table TypeSocket Network Loading Show Traffic DetailsName Server Configuration Remote ManagementTelnet OUT Name to IP Cache Parameter Description Security Parameter Description OptionsUnit Configuration Snmp Setup Parameter DescriptionService Setup Ethernet Service Setup Parameter Description OptionsZeros IP BroadcastOnes IP FilterWAN Service Setup Parameter Description Options PPP Setup OtherFilter Setup MAC Filters WAN or EthernetMenu Selection Description List Parameter Description IP Filter WAN or EthernetEdit LineIPX SAP Filter Menu WAN or Ethernet Network Address 32 bitsALL Node Address 48 bitsFrom SKT To SKTIPX Header Filters Events MAC Node ADRNovell KEEP-ALIVES PPP Events System EventsFlash Programming Timeout Flash Verify Error This Equipment Must be Earthed Installation of EquipmentAppendix a Warnings GroundedWarnung Mise en garde Installation de léquipment Mise en garde Cet équipement doit être relié a la terreMise en garde Connexion dautres équipements Appendix B Approval Requirements Appendix C EMC Requirements Appendix D Rear Panel Layout Appendix E AUI Port 15-WAYD-TYPE Pinout Tptx Appendix F 10BASE-T RJ45 Port PinoutTPTX+ TPRX+Appendix G IP Filter Examples Source and Destination IP AddressExamples Protocol SelectionSource and Destination Ports Issue 1.0 04 December 1997 Page 54 Appendix H IP Subnets CTRL-A Appendix I Router Maintenance MenuKermit CTRL-BDownload New Firmware using TCP loader Download New Firmware using TftpRestore Configuration using Tftp Boot File Using TCP Loader Set Default GatewayReset Password Set New IP AddressBoot File Using Tftp Loader Run Monitor