Prestige 662H/HW Series User’s Guide

CHAPTER 14

Firewall Configuration

This chapter shows you how to enable and configure the Prestige firewall.

14.1 Access Methods

The web configurator is, by far, the most comprehensive firewall configuration tool your Prestige has to offer. For this reason, it is recommended that you configure your firewall using the web configurator. SMT screens allow you to activate the firewall. CLI commands provide limited configuration options and are only recommended for advanced users.

14.2 Firewall Policies Overview

Firewall rules are grouped based on the direction of travel of packets to which they apply:

• LAN to LAN/ Router

WAN to LAN

DMZ to LAN

LAN to WAN

• WAN to WAN/ Router

DMZ to WAN

LAN to DMZ

WAN to DMZ

• DMZ to DMZ/ Router

Note: The LAN includes both the LAN port and the WLAN.

By default, the Prestige’s stateful packet inspection allows packets traveling in the following directions:

LAN to LAN/ Router

This allows computers on the LAN to manage the Prestige and communicate between networks or subnets connected to the LAN interface.

LAN to WAN

LAN to DMZ

WAN to DMZ

DMZ to WAN

By default, the Prestige’s stateful packet inspection blocks packets traveling in the following directions:

• WAN to LAN

Chapter 14 Firewall Configuration

158