Security 14-19

The five input filters and one output filter that make up Basic Firewall are shown in the table below.

Setting

Input filter 1

Input filter 2

Input filter 3

Input filter 4

 

Input filter 5

Output filter

 

1

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Enabled

Yes

Yes

Yes

Yes

 

Yes

Yes

 

 

 

 

 

 

 

 

Forward

No

No

Yes

Yes

 

Yes

Yes

 

 

 

 

 

 

 

 

Source IP

0.0.0.0

0.0.0.0

0.0.0.0

0.0.0.0

 

0.0.0.0

0.0.0.0

address

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Source IP

0.0.0.0

0.0.0.0

0.0.0.0

0.0.0.0

 

0.0.0.0

0.0.0.0

address mask

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Dest. IP

0.0.0.0

0.0.0.0

0.0.0.0

0.0.0.0

 

0.0.0.0

0.0.0.0

address

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Dest. IP

0.0.0.0

0.0.0.0

0.0.0.0

0.0.0.0

 

0.0.0.0

0.0.0.0

address mask

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Protocol type

TCP

TCP

ICMP

TCP

 

UDP

0

 

 

 

 

 

 

 

 

Source port

No Com-

No Com-

N/A

No Com-

 

No Com-

N/A

comparison

pare

pare

 

pare

 

pare

 

 

 

 

 

 

 

 

 

Source port ID

0

0

N/A

0

 

0

N/A

 

 

 

 

 

 

 

 

Dest. port

Equal

Equal

N/A

Greater

 

Greater

N/A

comparison

 

 

 

Than

 

Than

 

 

 

 

 

 

 

 

 

Dest. port ID

2000

6000

N/A

1023

 

1023

N/A

 

 

 

 

 

 

 

 

Basic Firewall’s filters play the following roles.

Input filters 1 and 2: These block WAN-originated OpenWindows and X-Windows sessions. Service origination requests for these protocols use ports 2000 and 6000, respectively. Since these are greater than 1023, OpenWindows and X-Windows traffic would otherwise be allowed by input filter 4. Input filters 1 and 2 must precede input filter 4; otherwise they would have no effect as filter 4 would have already passed OpenWindows and X-Windows traffic.

Input filter 3: This filter explicitly passes all WAN-originated ICMP traffic to permit devices on the WAN to ping devices on the LAN. Ping is an Internet service that is useful for diagnostic purposes.

Input filters 4 and 5: These filters pass all TCP and UDP traffic, respectively, when the destination port is greater than 1023. This type of traffic generally does not allow a remote host to connect to the LAN using one of the potentially intrusive Internet services, such as Telnet, FTP, and WWW.

Output filter 1: This filter passes all outgoing traffic to make sure that no outgoing connections from the LAN are blocked.

Page 181
Image 181
Netopia R2121 manual TCP Icmp UDP

R2121 specifications

The Netopia R2121 is a powerful and versatile router designed for both home and office environments, providing seamless connectivity and robust performance for various networking needs. This device offers a range of features and technologies that cater to the demands of modern users seeking reliable internet access, speed, and security.

One of the standout characteristics of the Netopia R2121 is its dual-band technology, which operates on both the 2.4 GHz and 5 GHz frequency bands. This capability allows users to enjoy faster speeds and less interference, as the 5 GHz band is typically less congested than the traditional 2.4 GHz band. With the ability to support multiple devices simultaneously, the R2121 ensures that users can stream videos, play online games, and conduct video conferences without experiencing lag or connectivity issues.

The router is equipped with advanced security features, including WPA3 encryption, which provides enhanced protection against unauthorized access and data breaches. The R2121 also supports a robust firewall system that guards against external threats, ensuring that the user's network remains secure. Additionally, the router includes parental controls, allowing users to manage and restrict internet access for specific devices or set time limits for usage, making it an excellent choice for families.

Another significant advantage of the Netopia R2121 is its extensive coverage area. With high-gain antennas and advanced beamforming technology, the router can deliver strong and stable Wi-Fi signals even in larger homes or office spaces. This technology focuses the Wi-Fi signal directly toward connected devices, minimizing dead zones and improving overall connectivity.

The R2121 also supports both IPv4 and IPv6, ensuring compatibility with current and future internet technologies. This forward-thinking design makes it a future-proof solution for users looking to invest in a reliable router.

In terms of setup and management, the Netopia R2121 features a user-friendly web interface that allows users to easily customize settings, monitor network performance, and manage connected devices. The inclusion of mobile app support further enhances the user experience, enabling remote monitoring and control of the network from anywhere.

Overall, the Netopia R2121 stands out as a robust and reliable router that combines advanced features, enhanced security, and excellent performance, making it an ideal choice for home and business users alike. With its focus on delivering seamless connectivity and comprehensive management options, the R2121 is well-suited for today's connected lifestyles.