P312 Broadband Security Gateway

Filter Set

Start

Packet into filter

Fetch First Filter Set

Fetch Next

 

 

 

Fetch First

Filter Set

 

 

 

Filter Rule

 

 

Fetch Next

 

 

 

 

Filter Rule

 

 

Yes

 

 

 

 

 

 

Yes

 

 

Next Filter Set

 

Next filter

 

 

No

Rule

No

Active?

Available?

 

Available?

 

 

 

 

 

 

 

 

 

 

Yes

 

 

 

 

Execute

No

 

 

 

Filter Rule

 

 

Check

 

 

 

 

 

 

 

Next

 

 

 

 

Rule

 

 

 

 

 

 

Forward

 

 

 

Drop

Drop Packet

 

 

 

Accept Packet

Figure 7-2 Filter Rule Process

You can apply up to four filter sets to a particular port to block multiple types of packets. With each filter set having up to six rules, you can have a maximum of 24 rules active for a single port.

Filters

7-3

Page 98
Image 98
ZyXEL Communications P-312 manual Filter Rule Process, Rule Forward Drop