Prestige 652 ADSL Security Router

10.3.1 Activating the Firewall

Enter option 2 in this menu to bring up the following screen. Press [SPACE BAR] and then [ENTER] to select Yes in the Active field to activate the firewall. The firewall must be active to protect against Denial of Service (DoS) attacks. Additional rules may be configured using the web configurator.

Menu 21.2 - Firewall Setup

The firewall protects against Denial of Service (DOS) attacks when it is active. The default Policy sets

1.allow all sessions originating from the LAN to the WAN and

2.deny all sessions originating from the WAN to the LAN

You may define additional Policy rules or modify existing ones but please exercise extreme caution in doing so

Active: No

LAN-to-WAN Set Name: ACL Default Set

WAN-to-LAN Set Name: ACL Default Set

Please configure the Firewall function through Web Configurator.

Press ENTER to Confirm or ESC to Cancel:

Figure 10-2 Menu 21.2 — Firewall SetupConfigure the firewall rules using the web configurator or CLI commands.

10.3.2 Viewing the Firewall Log

In menu 21, enter 3 to view the firewall log. An example of a firewall log is shown next.

 

# Time

Packet Information

Reason

Action

 

 

 

 

0Jan 1 00

From:192.168.17.1 To:192.168.17.255

default policy

block

 

 

15:43:19UDP src port:00520 dest port:00520

<2,00>

 

 

1Jan 1 00

From:172.20.1.179 To:172.21.1.66

default policy

block

 

 

15:43:20UDP src port:03571 dest port:00161

<2,00>

 

 

2Jan 1 00

From:172.21.1.148 To:172.21.255.255

default policy

block

 

 

15:43:20UDP src port:00137 dest port:00137

<2,00>

 

 

Clear Firewall Log (y/n):

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Figure 10-3 Example Firewall Log

10-2

Introducing the Prestige Firewall