Intel 9515, 9525, 9535 manual Filter Function, Transmit Tx Filters on LAN1

Page 9

DMZ Firewall Solution for the Express Router

Filters are defined as follows:

Filter Function

Prohibit users on the secure network access to the Internet

Settings

Default Action:

Discard

1

2

3

4

Allows access to the HTTP /FTP proxy server on the DMZ.

Allows access to the SMTP server on the DMZ.

Allows access to News (proxy) server on the DMZ.

Allows access to the router from the private LAN.

Action:

Pass

Protocol:

All

Dest. address type:

Host

Dest. address:

10.2.0.2

Src. address type:

All

Action:

Pass

Protocol:

All

Dest. address type:

Host

Dest. address:

10.2.0.3

Src. address type:

All

Action:

Pass

Protocol:

All

Dest. address type:

Host

Dest. address:

10.2.0.4

Src. address type:

All

Action:

Pass

Protocol:

All

Dest. port address:

Host

Dest. address:

<LAN1 IP address>

Scr. address type:

All

3.3.1.2 Transmit (Tx) Filters on LAN1

Configure these transmit filters for the LAN1 port, shown as they appear in Advanced Setup.

Filters are defined as follows:

Filter Function

Prohibit users on the secure network access to the Internet

1Allows HTTP and FTP (read only using HTTP) from secure LAN to HTTP/FTP proxy server on the DMZ.

Settings

Default Action:

Discard

 

 

Action:

Pass

Protocol:

TCP

TCP flags:

ACK

Dest. address type:

All

Dest. port:

>1023

Src. address type:

Host

07-12-99

Version 1.0

8

Image 9
Contents DMZ Firewall Solution Copyright 1999, Intel Corporation. All rights reserved Table of Contents Introduction What is a DMZAbout This Document ReferencesGeneral Setup and Considerations IP Filters in the Express RouterIP Address Selection DNS Setup Routing SetupMail Smtp Setup FTP SetupDMZ Single IP Address Solution Static Routing SetupNetwork Address Translation NAT Setup Settings IP Filters SetupEntry Function Receive Rx Filters on LAN1Transmit Tx Filters on LAN1 Filter FunctionSrc. address 10.2.0.2 Src. port Action Pass Protocol Receive Rx Filters on LAN2 2 LAN2 FiltersRIP Filter Function SettingsTransmit Tx filters on LAN2 Settings Receive Rx Filters on the connection to the Internet Internet Connection FiltersAction Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet IP Address Assignment DMZ Multiple IP Address SolutionNetwork Address Translation NAT Transmit Tx Filters on LAN1 Settings Src. port Action Pass Protocol Dest. address type All Dest port Src. address type All Src. port Action Discard Protocol Action Discard Protocol Transmit Tx filters on LAN2 Src. port 1023 Action Pass Protocol UDP Transmit Tx Filters on the Connection to the Internet