P2302R-P1C Support Notes
+ Internet Protocol
- Version (MSB 4 bits): 4
- Header length (LSB 4 bits): 5
- Service type: Precd=Routine, Delay=Normal, Thrput=Normal, Reli=Normal
- Total length: 60 (Octets)
- Fragment ID: 60172
- Flags: May be fragmented, Last fragment, Offset=0 (0x00)
- Time to live: 32 seconds/hops
- IP protocol type: ICMP (0x01)
- Checksum: 0xE3EA
- IP address 202.132.155.93 (Source IP address)
202.132.155.99(Destination IP address) - No option
+ Internet Control Message Protocol
- Type: 8 - Echo Request
- Code: 0
- Checksum: 0x455C
- Identifier: 768
- Sequence Number: 1280
- Optional Data: (32 bytes)
Configurations
From the above first trace, we know a client is trying to ping request the ZyXEL router. And from the second trace, we know the ZyXEL router will send a reply to the client accordingly. The following sample filter will utilize the 'Generic Filter Rule' to block the MAC address [00 80 c8 4c ea 63].
1. First, from the incoming LAN packet we know the uninteresting source MAC address starts at the 7th Octet
TIME: 37c060
0000: [00 a0 c5 01 23 45] [00 80 c8 4c ea 63] 08 00 45 00
| 0010: 00 | 3c | eb 0c | 00 | 00 | 20 | 01 | e3 ea ca 84 9b 5d ca 84 |
| |||||
| 0020: 9b | 63 | 08 | 00 | 45 | 5c | 03 | 00 | 05 | 00 | 61 62 63 64 | 65 66 |
| |
| 0030: | 67 | 68 | 69 | 6a | 6b | 6c | 6d | 6e | 6f | 70 | 71 72 73 74 | 75 76 |
|
| 0040: | 77 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
2. We are now ready to configure the 'Generic Filter Rule' as below.
30
All contents Copyright © 2007 ZyXEL Communications Corporation.