Chapter 15 Firewall

Table 67 Security > Firewall > Rules > Add (continued)

LABEL

DESCRIPTION

Address Type

Do you want your rule to apply to packets with a particular (single) IP, a range of IP

 

addresses (for instance, 192.168.1.10 to 192.169.1.50), a subnet or any IP address?

 

Select an option from the drop-down list box that includes: Single Address, Range

 

Address, Subnet Address and Any Address.

 

 

Start IP Address

Enter the single IP address or the starting IP address in a range here.

 

 

End IP Address

Enter the ending IP address in a range here.

 

 

Subnet Mask

Enter the subnet mask here, if applicable.

 

 

Source Mac Address

Specify a source MAC address of traffic to which to apply this firewall rule applies.

 

Please note that a blank source MAC address is equivalent to any.

 

 

Source Interface

Specify a source interface to which this firewall rule applies. This is the interface

 

through which the traffic entered the AMG1312-T Series. Please note that a blank

 

source interface is equivalent to any.

 

 

Destination Interface

Specify a destination interface to which this firewall rule applies. This is the interface

 

through which the traffic is destined to leave the AMG1312-T Series. Please note that

 

a blank source interface is equivalent to any.

 

 

Services

 

 

 

Available Services

Please see Appendix F on page 286 for more information on services available. Select

 

a service from the Available Services box.

 

 

Edit Customized

Click the Edit Customized Service button to bring up the screen that you use to

Service

configure a new custom service that is not in the predefined list of services.

 

 

TCP Flag

Specify any TCP flag bits the firewall rule is to check for.

 

 

Schedule

Select the days and time during which to apply the rule. Select Everyday and All

 

Day to always apply the rule.

 

 

Apply

Click this to save your changes.

 

 

Cancel

Click this to restore your previously saved settings.

 

 

15.4.2 Customized Services

Configure customized services and port numbers not predefined by the AMG1312-T Series. For a comprehensive list of port numbers and services, visit the IANA (Internet Assigned Number Authority) website. See Appendix F on page 286 for some examples. Click the Edit Customized Services button while editing a firewall rule to configure a custom service port. This displays the following screen.

176

 

AMG1312-T Series User’s Guide