Prestige 2602H/HW Series User’s Guide
Figure 201 Filter Rule Process
Filter Set
Start
Packet intoFilter
Fetch First Filter Set
| Fetch Next |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Fetch First |
| |||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |||||||
| Filter Set |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Filter Rule |
| |||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Fetch Next |
|
|
|
|
|
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||||
|
|
|
|
|
|
|
|
|
|
| Filter Rule |
|
|
|
|
|
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
|
| Yes |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
|
|
|
|
|
|
|
|
|
|
|
| Yes |
|
|
|
|
|
|
|
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
| Next Filter Set |
|
|
|
|
| Next filter |
|
|
|
|
|
|
|
|
|
| ||||||||
|
|
| No |
|
| Rule |
|
| No |
|
|
| Active? | ||||||||||||
| Available? |
|
|
|
|
|
|
|
|
| |||||||||||||||
|
|
|
|
|
| Available? |
|
|
|
|
|
|
|
|
|
| |||||||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |||||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Yes |
|
| Execute |
|
| Filter Rule |
No |
| |
|
|
Check
Next
Rule
Forward
Drop
Drop Packet | Accept Packet |
You can apply up to four filter sets to a particular port to block various types of packets. Because each filter set can have up to six rules, you can have a maximum of 24 rules active for a single port.
For incoming packets, your Prestige applies data filters only. Packets are processed depending on whether a match is found. The following sections describe how to configure filter sets.
34.1.1 The Filter Structure of the PrestigeA filter set consists of one or more filter rules. Usually, you would group related rules, for example, all the rules for NetBIOS, into a single set and give it a descriptive name. You can configure up to twelve filter sets with six rules in each set, for a total of 72 filter rules in the system.
356 | Chapter 34 Filter Configuration |