Table 13-3 TCP/IP Filter Rule Menu Fields

FIELD

DESCRIPTION

EXAMPLE

 

 

 

IP Protocol

Protocol refers to the upper layer protocol, e.g., TCP is 6,

0-255

 

UDP is 17 and ICMP is 1. This value must be between 0

 

 

and 255

 

 

 

 

IP Source Route

If Yes, the rule applies to packet with IP source route

No

 

option; else the packet must not have source route option.

 

 

The majority of IP packets do not have source route.

 

 

 

 

Destination

 

 

IP Address

Enter the destination IP Address of the packet you wish to

IP address

 

filter. This field reads don’t-careif it is 0.0.0.0.

 

IP Mask

Enter the IP mask that will be used to mask the bits of the

IP mask

 

IP address given in the Destination IP Address field.

 

Port #

Enter the destination port of the packets that you wish to

0-65535

 

filter. The range of this field is 0 to 65535. This field reads

 

 

don’t-care if it is 0.

 

Port # Comp

Select the comparison to apply to the destination port in

Equal

 

the packet against the value given in Destination Port #

 

 

field. Options are: None, Less, Greater, Equal or Not

 

 

Equal.

 

Source

 

 

IP Address

Enter the source IP Address of the packet you wish to

IP Address

 

filter. This field reads don’t-careif it is 0.0.0.0.

 

IP Mask

Enter the IP mask that will be used to mask the bits of the

IP Mask

 

IP address given in the Source IP Address field.

 

Port #

Enter the source port of the packets that you wish to filter.

0-65535

 

The range of this field is 0 to 65535. This field reads

 

 

don’t-care if it is 0.

 

Port # Comp

Select the comparison to apply to the source port in the

None

 

packet against the value given in Source Port # field.

 

 

Options are: None, Less, Greater, Equal or Not Equal.

 

TCP Estab

This field is applicable only when IP Protocol field is 6,

Yes

 

TCP. If Yes, the rule matches only established TCP

No

 

connections; else the rule matches all TCP packets.

 

 

 

 

13-8

Filter Configuration