Applications

First the firewall on the ISP connection (remote site 1) of the WAN is set-up. The firewall option is set to “inbound” to have this WAN firewall filter traffic from the ISP to the router while allowing unrestricted access out to the Internet.

Firewall

Location: Main

ªConfiguration

ªApplications Set-up

ªFirewall Set-up

ªWAN Firewall Set-up

ªenter ID# 1 for ISP remote site

ªFirewall

ªinbound

The firewall on the Internet connection is set-up to protect the entire corporate network, including the branch office, from unauthorized traffic.

Then the entries are made in the “Designated Servers” menu to allow Internet access to the FTP and Web servers on the corporate network.

FTP & WWW Designated Servers

Location: Main

ªConfiguration

ªApplications Set-up

ªFirewall Set-up

ªWAN Firewall Set-up

ªID# 1 for ISP remote site

ªDesignated Servers

ªFTP Server

195.100.1.12

ªWWW (HTTP) Server

195.100.1.20

When defining a designated server you will be prompted for the IP address of that device. Adding an entry to the designated servers list allows you to quickly setup a firewall entry without having to figure out TCP port values.

Next, the LAN firewall is set-up to restrict access to the LAN. The firewall option is set to “outbound” to have the LAN firewall filter traffic from the router.

Firewall

Location: Main

ªConfiguration

ªApplications Set-up

ªFirewall Set-up

ªLAN Firewall Set-up

ªFirewall

ªOutbound

Note: if this P1730 has a second LAN interface installed, you will be requested to select which LAN this firewall entry is to be used with.

57

Page 63
Image 63
Perle Systems 1700 manual Enter ID# 1 for ISP remote site, Inbound, FTP Server, WWW Http Server, Outbound