NETGEAR DGN3500-100NAS Outbound Rules Service Blocking, Considerations for Inbound Rules

Page 48

RangeMax Wireless-N DSL Gigabit Modem Router DGN3500 User Manual

Considerations for Inbound Rules

If your external IP address is assigned dynamically by your ISP, the IP address might change periodically as the DHCP lease expires. Consider using the Dynamic DNS screen so that external users can always find your network.

If the IP address of the local server computer is assigned by DHCP, it might change when the computer is rebooted. To avoid this, use the Reserved IP address feature in the LAN IP Setup screen to keep the computer’s IP address constant.

Local computers must access the local server using the computer’s local LAN address (192.168.0.11 in the example in the previous figure). Attempts by local computers to access the server using the external WAN IP address will fail.

Outbound Rules (Service Blocking)

The modem router allows you to block the use of certain Internet services by computers on your network. This is called service blocking or port filtering. You can define an outbound rule to block Internet access from a local computer based on the following:

IP address of the local computer (source address)

IP address of the Internet site being contacted (destination address)

Time of day

Type of service being requested (service port number)

Following is an application example of outbound rules.

Outbound Rule Example: Blocking Instant Messenger

If you want to block Instant Messenger usage by employees during working hours, you can create an outbound rule to block that application from any internal IP address to any external address according to the schedule that you create in the Schedule screen.You can specify that the modem router logs any attempt to use Instant Messenger during this blocked period. You can also open or close AOL or MSN Instant Messenger ports: see the Firewall Rules screen in the “Order of Precedence for Rules” section on page 3-12.

3-10

Protecting Your Network

v1.0, November 2009

Image 48
Contents RangeMax Wireless-N DSL Gigabit Modem Router NETGEAR, IncTrademarks Statement of ConditionsEuropean Union Statement of Compliance Bestätigung des Herstellers/Importeurs 1999/5/EGCertificate of the Manufacturer/Importer Voluntary Control Council for Interference Vcci StatementCustomer Support World Wide WebContents Chapter Protecting Your Network Chapter USB Storage Appendix a Technical Specifications About This Manual Conventions, Formats, and ScopeHow to Print This Manual Revision HistoryConnecting Your Router to the Internet Using the Setup ManualLogging In to Your Wireless Modem Router V1.0, November Using the Setup Wizard Viewing or Manually Configuring Your ISP SettingsISP does not require login Basic Settings screen fields Settings DescriptionGet Automatically from ISP. Your ISP uses Dhcp to Want to useConfiguring Adsl Settings Chapter Configuring Your Wireless Network Security Settings Planning Your Wireless NetworkWireless Placement and Range Guidelines See Manually Configuring Your Wireless Security onWireless Security Options Manually Configuring Your Wireless Settings Wireless Settings NETGEAR4Ssid Manually Configuring Your Wireless Security Restricting Wireless Access to Your NetworkWPA-802.1x Turning off wireless connectivity completely V1.0, November Configuring Mixed WPA-PSK+WPA2-PSK Security Configuring WEP Configuring WPA-802.1x Bit WEPUsing Push N Connect WPS to Configure Your Wireless Network Using a WPS Button to Add a WPS Client Using PIN Entry to Add a WPS Client V1.0, November Adding More WPS Clients Adding Both WPS and Non-WPS ClientsConfiguring Advanced WPS Settings V1.0, November Protecting Access to Your Wireless Modem Router Chapter Protecting Your NetworkHow to Change the Built-In Password Viewing Logs of Web Access or Attempted Web Access Changing the Administrator Login Time-outBlocking Sites Log Entry DescriptionsField Description V1.0, November Firewall Rules Inbound Rules Port Forwarding Inbound Rule Example a Local Public Web Server Inbound Rule Example Allowing Video conferencing Outbound Rules Service Blocking Considerations for Inbound RulesV1.0, November Order of Precedence for Rules Services V1.0, November Setting Times and Scheduling Firewall Services Setting Your Time ZoneScheduling Firewall Services Configuring E-mail Alerts and Web Access Log Notifications Select the Turn E-mail Notification On check boxV1.0, November Chapter Managing Your Network Upgrading the FirmwareManually Checking for Firmware Upgrades V1.0, November Viewing Wireless Modem Router Status Information Wireless Modem Router Status Fields Explains Router Status screen fieldsConnection Status Connection Status Settings Wireless Modem Router StatisticsStatistics Viewing a List of Attached Devices Managing the Configuration File Backing Up and Restoring the ConfigurationErasing the Configuration Enabling Remote Management Access Select the Turn Remote Management On check box Chapter Advanced Configuration WAN SetupWAN Setup Settings Setting DescriptionSetting Up a Default DMZ Server MTU Size onV1.0, November LAN Setup fields are explained in the following table LAN SetupUsing the Wireless Modem Router as a Dhcp Server Address ReservationConfiguring LAN Setup V1.0, November LAN Setup fields are explained in the following table Using the Wireless Modem Router as a Dhcp Server Dynamic DNS Service Select the Use a Dynamic DNS Service check box Setting up Static Routes Static Route ExampleConfiguring Static Routes Configuring Universal Plug and Play V1.0, November Building Wireless Bridging and Repeating Networks Configuring a Point-to-Point Bridge Configuration Configuring a Repeater with Wireless Client Association Internet Wireless PC 192.168.0.1 V1.0, November Chapter USB Storage USB Drive Requirements File Sharing ScenariosBus Speed/Second Sharing Photos with Friends and Family Storing Files in a Central Location for PrintingSharing Large Files with Colleagues USB Storage Basic Settings USB Storage Basic Settings \\readyshare\\readyshare\USBStorage Fields and Buttons DescriptionSafely Remove USB Device button Editing a Network Folder Configuring USB Storage Advanced Settings USB Storage Advanced SettingsFields Description Http Unmounting a USB Drive Creating a Network FolderSpecifying Approved USB Devices Select the Allow only approved devices check boxConnecting to the USB Drive from a Remote Computer Connecting to the USB Drive with Microsoft Network SettingsAccessing the Router’s USB Drive Remotely Using FTP Locating the Internet Port IP AddressConfiguring Windows 98SE and Windows ME Enabling File and Printer SharingChapter Troubleshooting Basic FunctioningPower LED Is Not On Power LED Is RedCannot Log in to the Wireless Modem Router LAN or Adsl Port LED Is Not OnWindow Appears Asking You to Reload Firmware Troubleshooting the ISP Connection Adsl LinkInternet LED is Red Adsl Link LED Is Blinking AmberTroubleshooting PPPoE or PPPoA Obtaining an Internet IP AddressTroubleshooting Internet Browsing Resolving a ‘Reload Firmware’ MessageTroubleshooting a TCP/IP Network Using the Ping Utility Testing the LAN Path to Your RouterTesting the Path from Your Computer to a Remote Device Ping -n 10 IP addressRestoring the Default Configuration and Password Problems with Date and TimeAppendix a Technical Specifications General SpecificationsFactory Default Configuration Specification Description Interface SpecificationsFeature Default Behavior Login Internet ConnectionFeature Default Behavior WirelessFirewall Appendix B Related Documents Document LinkIndex NumericsIndex-2 Index-3