Prestige 652 ADSL Security Router

Table 12-1 Firewall Rules Summary — First Screen

FIELD

DESCRIPTION

OPTIONS

 

default set.

 

 

 

 

The following fields summarize the rules you have created. Note that these fields are read only. Click the tab at the top of the box to order the rules according to that tab.

No.

This is your firewall rule number. The ordering of your

 

 

rules is important as rules are applied in turn. The Move

 

 

field below allows you to reorder your rules. Click a rule’s

 

 

number to edit the rule.

 

 

 

 

Source IP

This is the source address of the packet.

 

 

 

 

Destination IP

This is the destination address of the packet.

 

 

 

 

Service

This is the service to which the rule applies. See Table

 

 

12-2for more information.

 

 

 

 

Action

This is the specified action for that rule. Note that Block

Block

 

means the firewall silently discards the packet.

Forward

 

 

 

 

 

Move Rule

You may reorder your rules using this function. Select by

 

 

clicking on the rule you want to move. The ordering of

 

 

your rules is important as rules are applied in turn.

 

To Rule Number

Select the number you want to move the rule to.

 

 

 

 

Move

Click Move to move the rule.

 

 

 

 

Click Back to return to the previous screen. Click Apply to save your customized settings and exit this screen. Click Reset to return to the previous configuration. Click the Help icon for field descriptions.

12.5 Predefined Services

The Available Services list box in the Edit Rule screen (see Figure 12-4) displays all predefined services that the Prestige already supports. Next to the name of the service, two fields appear in brackets. The first field indicates the IP protocol type (TCP, UDP, or ICMP). The second field indicates the IP port number that defines the service. (Note that there may be more than one IP protocol type. For example, look at the default configuration labeled “(DNS)”. (UDP/TCP:53) means UDP port 53 and TCP port 53. Up to 128 entries are supported. Custom services may also be configured using the Custom Ports function discussed later.

12-6

Creating Custom Rules