Intel 9535, 9515, 9525 manual Transmit Tx Filters on the Connection to the Internet

Page 17

DMZ Firewall Solution for the Express Router

Filter Function

15Allows incoming News (NNTP) from a specified external News server to the DMZ (see note 2).

16Allows outgoing News (NNTP) to a specified external News server from the DMZ.

Settings

Dest. address type:

Host

Dest. address:

10.2.0.3

Dest. port

> 1023

Src. address type:

All

Src. port:

= 25

Action:

Pass

Protocol:

TCP

TCP flags:

All

Dest. address type:

Host

Dest. address:

10.2.0.4

Dest. port:

= 119

Src. address type:

Host

Src. address:

196.24.5.8

Src. port:

> 1023

Action:

Pass

Protocol:

TCP

TCP flags:

ACK

Dest. address type:

Host

Dest. address:

10.2.0.4

Dest. port:

> 1023

Src. address type:

Host

Src. address:

196.24.5.8

Src. port:

119

Note 1: Only passive FTP connections are supported. The HTTP/FTP proxy must be configured to use a passive FTP connection.

Note 2: The filter is not required when using a News proxy server on DMZ.

3.3.3.2 Transmit (Tx) Filters on the Connection to the Internet

Set the default action to Pass.

07-12-99

Version 1.0

16

Image 17
Contents DMZ Firewall Solution Copyright 1999, Intel Corporation. All rights reserved Table of Contents Introduction What is a DMZAbout This Document ReferencesIP Address Selection General Setup and ConsiderationsIP Filters in the Express Router DNS Setup Routing SetupMail Smtp Setup FTP SetupNetwork Address Translation NAT Setup DMZ Single IP Address SolutionStatic Routing Setup Settings IP Filters SetupEntry Function Receive Rx Filters on LAN1Transmit Tx Filters on LAN1 Filter FunctionSrc. address 10.2.0.2 Src. port Action Pass Protocol Receive Rx Filters on LAN2 2 LAN2 FiltersRIP Filter Function SettingsTransmit Tx filters on LAN2 Settings Receive Rx Filters on the connection to the Internet Internet Connection FiltersAction Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet IP Address Assignment DMZ Multiple IP Address SolutionNetwork Address Translation NAT Transmit Tx Filters on LAN1 Settings Src. port Action Pass Protocol Dest. address type All Dest port Src. address type All Src. port Action Discard Protocol Action Discard Protocol Transmit Tx filters on LAN2 Src. port 1023 Action Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet