![](/images/new-backgrounds/1166792/166792205x1.webp)
Cyclades-PR2000
Interior Router
If an interior router exists in the network, the administrator may decide to use a Default Scope of Permit. In this case, all undesired traffic must be excluded by a rule in the rule list. In Figure 12.5, a conceptual equivalent of the interface is shown.
All packets except those which fall into the holes in the ball will be allowed entry in to or out of the network.
PERMIT
World ofPo s si b l e
Stop | a |
| P |
Forged Packets | c |
e | |
| k |
| t |
| s |
Don’t Allow
Access to News
PERMIT
Stop Telnets
From the Outside
(Except Bastion Host)
PERMIT
FIGURE 12.5 PERMIT DEFAULT SCOPE
Chapter 12 - Filters and Rules | 103 |