P100IH ISDN Router
Outgoing Packet
Data
Filters
Match
Drop
packet
No
match
|
|
|
| Call Filters |
|
|
|
|
|
|
|
|
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |||
|
|
|
|
| No |
|
|
|
|
|
| No |
| Active Data |
|
| |||||
|
|
|
|
|
|
|
|
| |||||||||||||
|
|
|
|
|
| ||||||||||||||||
default |
| match | Call Filters |
| match |
|
| Initiate call |
| ||||||||||||
|
|
|
|
|
|
|
| if line not up |
| ||||||||||||
Call Filters |
|
|
|
| (if applicable) |
|
|
|
|
| |||||||||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Send packet | ||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| and reset | |
| Match |
|
|
|
|
| Match |
|
|
|
|
|
| Idle Timer | |||||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |||||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Drop packet |
|
|
|
|
| Drop packet |
|
|
|
|
|
|
|
|
|
| |||||
if line not up |
|
|
|
|
| if line not up |
|
|
|
|
|
|
|
|
|
| |||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Or |
|
|
|
|
|
| Or |
|
|
|
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||
|
|
|
|
| Send packet |
|
|
|
|
| Send packet |
|
|
|
|
|
| ||||
|
|
|
|
|
|
|
|
|
|
|
| ||||||||||
|
|
|
| but do not reset |
|
| but do not reset |
| |||||||||||||
|
|
|
|
| Idle Timer |
|
|
|
|
|
| Idle Timer |
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Figure 9-2 Outgoing Packet Filtering Process
For incoming packets, your Prestige applies data filters only. Packets are processed depending upon whether a match is found. The following sections describe how to configure filter sets.
The Filter Structure of the Prestige
A filter set consists of one or more filter rules. Usually, you would group related rules, e.g., all the rules for NetBIOS, into a single set and give it a descriptive name. The Prestige allows you to configure up to twelve filter sets with six rules in each set, for a total of 72 filter rules in the system.
You can apply up to four filter sets to a particular port to block multiple types of packets. With each filter set having up to six rules, you can have a maximum of 24 rules active for a single port.
Filter Configuration |