set security state-insp xposed-addr exposed-address# "n" start-port [ 1 - 65535 ]

set security state-insp xposed-addr exposed-address# "n" end-port [ 1 - 65535 ]

Packet Filtering Settings

Packet Filtering settings are supported beginning with Firmware Version 7.4.

Packet Filtering has two parts:

Create/Edit/Delete Filter Sets, create/edit/delete rules to a Filter Set.

Associate a created Filter Set with a WAN or LAN interface

See “Packet Filter” on page 154 for more information.

set security pkt-filter filterset filterset-name[ in out ] index forward [ on off ]

Creates or edits a filter rule, specifying whether packets will be forwarded or not.

NOTE:

If this is the first rule, it will create the filter-set called filterset-name, other- wise it will edit the filterset.

If the index is not consecutive, the system will select the next consecutive index. If the index does not exist, a rule will be created. If a rule exists, the rule will be edited.

set security pkt-filter filterset filterset-name[ in out ] index idle-reset [ on off ]

Turns idle reset on or off for the specified filter rule. A match on this rule resets idle-time- out status and keeps the WAN connection alive. The default is off.

278

Page 278
Image 278
Netopia 2200 manual 278, Packet Filtering Settings