Intel 9535, 9515, 9525 manual IP Filters Setup, Entry Function, Settings, Receive Rx Filters on LAN1

Page 8

DMZ Firewall Solution for the Express Router

Note The order of the NAT entries is important.

NAT entries are defined as follows:

Entry Function

1Directs all incoming HTTP requests to the Web server.

2Directs all incoming FTP requests to the Web server.

3Directs all incoming SMTP requests to the SMTP server

4Directs all incoming NNTP requests to the News server.

5Directs all other incoming traffic to the DMZ.

Settings

Mapping type:

Static Port (Single IP)

Internal address:

10.2.0.1

Internal port:

80

External IP address:

<IP address from ISP>

External port:

80

Mapping type:

Static Port (Single IP)

Internal address:

10.2.0.1

Internal port:

21

External IP address:

<IP address from ISP>

External port:

21

Mapping type:

Static Port (Single IP)

Internal address:

10.2.0.3

Internal port:

25

External address:

<IP address from ISP>

External port

25

Type:

Static Port (Single IP)

Internal address:

10.2.0.4

Internal port:

119

External IP address:

<IP address from ISP>

External port:

119

Type:

Network to single IP

Internal address:

10.2.0.0

External IP address:

<IP address from ISP>

3.3IP Filters Setup

This section describes the required IP filters for the LAN1, LAN2 and connection to the Internet.

3.3.1 LAN1 Filters

3.3.1.1 Receive (Rx) Filters on LAN1

Configure these receive filters for the LAN1 port, shown as they appear in Advanced Setup.

07-12-99

Version 1.0

7

Image 8
Contents DMZ Firewall Solution Copyright 1999, Intel Corporation. All rights reserved Table of Contents What is a DMZ IntroductionAbout This Document ReferencesIP Address Selection General Setup and ConsiderationsIP Filters in the Express Router Routing Setup DNS SetupMail Smtp Setup FTP SetupNetwork Address Translation NAT Setup DMZ Single IP Address SolutionStatic Routing Setup IP Filters Setup SettingsEntry Function Receive Rx Filters on LAN1Filter Function Transmit Tx Filters on LAN1Src. address 10.2.0.2 Src. port Action Pass Protocol 2 LAN2 Filters Receive Rx Filters on LAN2Filter Function Settings RIPTransmit Tx filters on LAN2 Settings Internet Connection Filters Receive Rx Filters on the connection to the InternetAction Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet DMZ Multiple IP Address Solution IP Address AssignmentNetwork Address Translation NAT Transmit Tx Filters on LAN1 Settings Src. port Action Pass Protocol Dest. address type All Dest port Src. address type All Src. port Action Discard Protocol Action Discard Protocol Transmit Tx filters on LAN2 Src. port 1023 Action Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet