Intel 9525, 9515, 9535 manual Transmit Tx filters on LAN2 Settings

Page 13

DMZ Firewall Solution for the Express Router

Filter Function

9Discards all ICMP packets entering the DMZ network. This prevents the router from reporting the IP netmask.

10Discards all packets to open router ports.

Four filters are required.

11

12

13

3.3.2.2 Transmit (Tx) filters on LAN2

Settings

Scr. address type:

Host

Src. address:

<LAN1 IP address>

Src. port :

All

Action:

Discard

Protocol:

ICMP

Dest. address type:

All

Scr. address type:

All

Action:

Discard

Protocol:

UDP

Dest. address type:

Host

Dest. address:

<LAN1 IP address>

Dest. port:

All

Src. address type:

All

Src. port:

All

Action:

Discard

Protocol:

UDP

Dest. address type:

Host

Dest. address:

<LAN2 IP address>

Dest. port:

All

Src. address type:

All

Src. port:

All

Action:

Discard

Protocol:

TCP

Flags:

All

Dest. address type:

Host

Dest. address:

<LAN1 IP address>

Dest. port:

All

Src. address type:

All

Src. port:

All

Action:

Discard

Protocol:

TCP

flags:

All

Dest. address type:

Host

Dest. address:

<LAN2 IP address>

Dest. port:

All

Src. address type:

All

Src. port:

All

To pass all packets transmitted from the DMZ, set the default action to Pass.

07-12-99

Version 1.0

12

Image 13
Contents DMZ Firewall Solution Copyright 1999, Intel Corporation. All rights reserved Table of Contents Introduction What is a DMZAbout This Document ReferencesIP Filters in the Express Router General Setup and ConsiderationsIP Address Selection DNS Setup Routing SetupMail Smtp Setup FTP SetupStatic Routing Setup DMZ Single IP Address SolutionNetwork Address Translation NAT Setup Settings IP Filters SetupEntry Function Receive Rx Filters on LAN1Transmit Tx Filters on LAN1 Filter FunctionSrc. address 10.2.0.2 Src. port Action Pass Protocol Receive Rx Filters on LAN2 2 LAN2 FiltersRIP Filter Function SettingsTransmit Tx filters on LAN2 Settings Receive Rx Filters on the connection to the Internet Internet Connection FiltersAction Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet IP Address Assignment DMZ Multiple IP Address SolutionNetwork Address Translation NAT Transmit Tx Filters on LAN1 Settings Src. port Action Pass Protocol Dest. address type All Dest port Src. address type All Src. port Action Discard Protocol Action Discard Protocol Transmit Tx filters on LAN2 Src. port 1023 Action Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet