Service Group/Object - Use the drop down list to choose the one

 

that you want.

Fragments

Specify the action for fragmented packets. And it is used for Data

 

Filter only.

 

Don’t care -No action will be taken towards fragmented packets.

 

Unfragmented -Apply the rule to unfragmented packets.

 

Fragmented - Apply the rule to fragmented packets.

 

Too Short - Apply the rule only to packets that are too short to

 

contain a complete header.

Pass or Block

Specifies the action to be taken when packets match the rule.

 

Block Immediately - Packets matching the rule will be dropped

 

immediately.

 

Pass Immediately - Packets matching the rule will be passed

 

immediately.

 

Block If No Further Match - A packet matching the rule, and that

 

does not match further rules, will be dropped.

 

Pass If No Further Match - A packet matching the rule, and that

 

does not match further rules, will be passed through.

Branch to other Filter

If the packet matches the filter rule, the next filter rule will branch

Set

to the specified filter set. Select next filter rule to branch from the

 

drop-down menu. Be aware that the router will apply the

 

specified filter rule for ever and will not return to previous filter

 

rule any more.

Log

For troubleshooting needs you can specify the

 

filter/CSM/Anti-Virus/Anti-Intrusion/Anti-Spam log here by

 

checking the box. Check this box to record all packets; or uncheck

 

this box to ignore all the packet record. The log will be displayed

 

on Draytek Syslog window.

Content Security

All the packets/connections within the range configured in the

Management

above conditions must follow the standard configured in the CSM

 

profile selected here. For detailed information, refer to the section

 

of CSM profile setup.

Anti-Virus

Select one of the anti-virus profile settings (created in

 

Anti-Virus>>Profile Setting) for applying with this router. Please

 

set at least one profile for anti-virus in Anti-Virus-> Profile

 

Setting web page first.

Anti-Intrusion

Check the Enable box to invoke anti-intrusion filter function.

Anti-Spam

Select one of the anti-spam profile settings (created in

 

Anti-Spam>>Profile Setting) for applying with this router. Please

 

set at least one profile for anti-spam in Anti-Spam>>Profile

 

Setting web page first.

Example

As stated before, all the traffic will be separated and arbitrated using on of two IP filters: call filter or data filter. You may preset 12 call filters and data filters in Filter Setup and even link them in a serial manner. Each filter set is composed by 7 filter rules, which can be further defined. After that, in General Setup you may specify one set for call filter and one set for data filter to execute first.

VigorPro5500 Series User’s Guide

65

Page 73
Image 73
Draytek 5500 Series manual Example