Siemens E-110-I Viewing Your IP Filter Configuration, Configuring IP Filter Global Settings

Page 64

SIEMENS ADSL E-110_E-110-I user manual

IP Filter Configuration

The IP filter feature enables you to create rules that control the forwarding of incoming and outgoing data between your LAN and the Internet. This chapter explains how to create IP filter rules.

Viewing Your IP Filter Configuration

Select Services > IP Filter. The IP Filter Configuration page displays.

Configuring IP Filter Global Settings

The IP Filter Configuration page enables you to configure several global IP Filter settings, and displays a table showing all existing IP Filter rules. The global settings that you can configure are:

Security Level: When High is selected, only those rules that are assigned a security value of High will be in effect. The same is true for the Medium and Low settings. When None is selected, IP Filtering is disabled.

Private/Public/DMZ Default Action: This setting specifies a default action to be taken (Accept or Deny) on private, public, or DMZ-type device interfaces when they receive packets that do not match any of the filtering rules.

Private – Typically, the global setting for private interfaces is Accept, so that LAN computers have access to the ADSL Router’s Internet connection.

Public – The interface connects to the Internet. e.g., PPP, EoA, and IPoA interfaces. Typically, the global setting for public interfaces is Deny, so that all accesses to your LAN initiated from external computers are denied (discarded at the public interface), except for those allowed by a specific IP Filter rule.

DMZ – Refers to computers that are available for both public and in-network accesses (such as a company's public Web server). Packets received on a DMZ interface - a whether from a LAN or external source - are subject to a set of protections that is in between public and private interfaces. The global setting for DMZ-type interfaces may be set to Deny so that all attempts to access these servers are denied by default; the administrator may then configure IP Filter rules to allow accesses of certain types.

58

Rev:01_040220

Image 64
Contents Siemens Adsl E-110/E-110-I Safety Notes For InstallationFor Using For ServiceContent IiiAdvanced Configuration via Web browser NAT ConfigurationRIP Configuration Administration TasksContents Appendix SpecificationPage Features Before You UseSystem Requirements Configuration and ManagementUnpacking LED Indicators Front Panel System Messages OverviewPhysical Outlook Front PanelEthernet Rear PanelRear Panel9V 1A Installation Connecting the Adsl RouterAnalog Pstn installation Choosing a place for the Adsl RouterIsdn installation Isdn NTUSB driver installation Install the USB driverUninstall the USB driver Click Start Programs Siemens DSL Modem UninstallConfigure TCP/IP on Client PC ConfigurationFor Windows Page Rev01040220 Page For Windows 98 and Windows 98 SE Your network interface card When returning to Network window, click OK Rev01040220 Page For Windows ME For Windows NT Page Page Page For Windows Page Page For Windows XP Click Internet ProtocolTCP/IP and then click OKFor Macintosh OS 8.6 For Macintosh OS From the Apple Menu, select System Preferences…Close the Network window Renew IP Address on Client PC For Windows ME For Windows Internet Access Quick Configuration via Web browserClick Connect and Save Advanced Configuration via Web browser Main Menu Commonly Used Buttons and IconsViewing Basic System Information Quick Configuration Rebooting the device using Configuration Manager Committing Changes to Permanent StorageSub-Menus DSLNAT Advanced Configuration Configuring IP RoutesConfiguring Dhcp Server Dhcp ConfigurationPart 1. Creating IP address pools Part 2. Enabling Dhcp Server Mode Part 3. Configuring your PCs as Dhcp clients Modifying Address PoolsViewing Current Dhcp Address Assignments Select Lan Dhcp ServerPart 2. Enabling Dhcp relay mode Configuring Dhcp RelayPart 1. Defining the Dhcp relay interfaces Viewing Your NAT Configuration NAT ConfigurationThese private IP addresses Are translated to FieldDescription Page Viewing Current NAT Translations Viewing NAT Rules and Rule StatisticsField Description Adding NAT Rules Rdr rule Allowing external access to a LAN computer Basic rule Performing 11 translations Bimap rule Performing two-way translations Page Configuring the RIP RIP ConfigurationSelect a Send Mode and a Receive Mode Viewing RIP Statistics Firewall Configuration Firewall, IP Filters and Blocked ProtocolsMail ID of Admin 1/2/3 Field Description Max Half open TCP ConnMax Icmp Conn Max Single Host ConnViewing Your IP Filter Configuration IP Filter ConfigurationConfiguring IP Filter Global Settings Creating IP Filter Rules Field Description Rule IDAction DirectionField Description Log Option Security LevelLog Tag Start/End TimeField Description Dest Port TCP FlagIcmp Type Icmp CodeIP filter rule examples Specify Protocol eq TCPViewing IP Filter Statistics To Block Specific Protocols Managing Current IP Filter SessionsAdministration Tasks User ConfigurationChanging Your Login Password Changing the System Date and TimeSelect Admin Local Image Upgrade Image UpgradeAdding a New User View System Alarms DiagnosticsPort Settings View DSL Parameters Page Bridge Mode Part 1 Configuring the Adsl RouterConnection Modes Creating an ATM VCC interfaceCreating an EoA interface Field Description VC InterfaceMux Type Max Proto per AAL5LAN configuration Enable Bridging functionSelect Bridge LAN Config PPP Connection Mode Part 3 Configuring the PCPart 2 Check your connection status Commit your changesSelect the ATM VC you created, e.g. aal5-0 Creating a PPP interfaceInterface Sec Type Select Public Service Name Login NamePassword Field Description Status Select Start or StartOnDataRouter Connection Mode Creating a IPoA interface Troubleshooting Problem Troubleshooting Suggestion LEDsInternet Access Configuration Manager ProgramProblem Troubleshooting Suggestion Upgrading Error Message Possible cause ActionGlossary PVC Permanent Virtual Circuit RIP Routing Information ProtocolUDP User Datagram Protocol Virtual ServerAppendix Specification SoftwarePower Requirement and Operation Environment Requirement HardwareRegulatory Approvals and Compliance Physical