Intel 9535, 9515, 9525 manual 2 LAN2 Filters, Receive Rx Filters on LAN2

Page 11

DMZ Firewall Solution for the Express Router

Filter

8

Function

Sends all packets generated by the router to the secure LAN (LAN1).

Settings

Dest. address:

10.5.0.2

Dest. port:

> 1023

Src. address type:

Host

Src. address:

10.2.0.4

Src. port:

= 119

Action:

Pass

Protocol:

TCP

TCP flags:

All

Dest. address type:

All

Dest. port:

All

Src. address type:

Host

Src. address:

<LAN1 IP address>

Src. port:

All

Note 1: Some proxy servers, such as Microsoft Proxy* 2.0, do not support FTP proxy using the FTP protocol. For upload and download using a special FTP program like WS_FTP*, an additional FTP proxy on DMZ is required. This proxy server normally runs on port 21 and has to support passive FTP. If download from an Internet browser is sufficient, the two filters are not required.

Note 2: The filter is not required when using a News proxy server on DMZ.

3.3.2 LAN2 Filters

3.3.2.1 Receive (Rx) Filters on LAN2

Configure these receive filters for the LAN2 port, shown as they appear in Advanced Setup.

07-12-99

Version 1.0

10

Image 11
Contents DMZ Firewall Solution Copyright 1999, Intel Corporation. All rights reserved Table of Contents References What is a DMZIntroduction About This DocumentIP Address Selection General Setup and ConsiderationsIP Filters in the Express Router FTP Setup Routing SetupDNS Setup Mail Smtp SetupNetwork Address Translation NAT Setup DMZ Single IP Address SolutionStatic Routing Setup Receive Rx Filters on LAN1 IP Filters SetupSettings Entry FunctionTransmit Tx Filters on LAN1 Filter FunctionSrc. address 10.2.0.2 Src. port Action Pass Protocol Receive Rx Filters on LAN2 2 LAN2 FiltersRIP Filter Function SettingsTransmit Tx filters on LAN2 Settings Receive Rx Filters on the connection to the Internet Internet Connection FiltersAction Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet IP Address Assignment DMZ Multiple IP Address SolutionNetwork Address Translation NAT Transmit Tx Filters on LAN1 Settings Src. port Action Pass Protocol Dest. address type All Dest port Src. address type All Src. port Action Discard Protocol Action Discard Protocol Transmit Tx filters on LAN2 Src. port 1023 Action Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet