Prestige 652 ADSL Security Router

Table 16-3 TCP/IP Filter Rule Menu Fields

FIELD

DESCRIPTION

EXAMPLE

Filter #

This is the filter set, filter rule coordinates, for instance, 2, 3 refers to

7,1

 

the second filter set and the third filter rule of that set.

 

 

 

 

Filter Type

Use [SPACE BAR] and then [ENTER] to choose a rule. Parameters

TCP/IP Filter

 

displayed for each type will be different. Choices are TCP/IP Filter

Rule

 

Rule or Generic Filter Rule.

 

Active

Use [SPACE BAR] and then [ENTER] to select Yes to activate or

No

 

No to deactivate the filter rule.

(default)

IP Protocol

This is the upper layer protocol, for example, TCP is 6, UDP is 17

0 to 255

 

and ICMP is 1. The value must be between 0 and 255. A value of O

 

 

matches ANY protocol.

 

 

 

 

IP Source

IP Source Route is an optional header that dictates the route an IP

No

Route

packet takes from its source to its destination. If Yes, the rule

(default)

 

applies to any packet with an IP source route. The majority of IP

 

 

packets do not have source route.

 

 

 

 

Destination:

Type the destination IP address of the packet you want to filter. This

IP address

IP Addr

field is ignored if it is 0.0.0.0.

 

 

 

 

 

 

IP Mask

Type the IP mask to apply to the Destination: IP Addr field.

IP mask

 

 

 

Port #

Type the destination port of the packets you want to filter. The field

0 to 65535

 

range is 0 to 65535. A 0 field is ignored.

 

 

 

 

Port # Comp

Select the comparison to apply to the destination port in the packet

None

 

against the value given in Destination: Port #. Choices are None,

 

 

Less, Greater, Equal or Not Equal.

 

Source:

Type the source IP Address of the packet you want to filter. A

IP address

IP Addr

0.0.0.0 field is ignored.

 

 

 

 

 

 

IP Mask

Type the IP mask to apply to the Source: IP Addr field.

IP mask

 

 

 

Port #

Type the source port of the packets you want to filter. The range of

0 to 65535

 

this field is 0 to 65535. A 0 field is ignored.

 

 

 

 

Port # Comp

Select the comparison to apply to the source port in the packet

None

 

against the value given in Source: Port # field. Choices are None,

 

 

Less, Greater, Equal or Not Equal.

 

TCP Estab

This applies only when the IP Protocol field is 6, TCP. If Yes, the

No

 

rule matches packets that want to establish TCP connection(s)

(default)

 

(SYN=1 and ACK=0); else it is ignored.

 

 

 

 

Filter Configuration

16-9