Prestige 334 User’s Guide

Table 87 TCP/IP Filter Rule

FIELD

DESCRIPTION

OPTIONS

 

 

 

Source

 

 

 

 

 

IP Address

Enter the source IP Address of the packet you wish to filter. This

0.0.0.0

 

field is ignored if it is 0.0.0.0.

 

IP Mask

Enter the IP mask to apply to the Source: IP Addr.

0.0.0.0

 

 

 

Port #

Enter the source port of the packets that you wish to filter. The

0-65535

 

range of this field is 0 to 65535. This field is ignored if it is 0.

 

Port # Comp

Press [SPACE BAR] and then [ENTER] to select the comparison

None

 

to apply to the source port in the packet against the value given

Less

 

in Source: Port #.

 

Greater

 

 

 

 

Equal

 

 

Not Equal

 

 

 

TCP Estab

This field is applicable only when the IP Protocol field is 6, TCP.

Yes

 

Press [SPACE BAR] and then [ENTER] to select Yes, to have

No

 

the rule match packets that want to establish a TCP connection

 

 

(SYN=1 and ACK=0); if No, it is ignored.

 

More

Press [SPACE BAR] and then [ENTER] to select Yes or No. If

Yes

 

Yes, a matching packet is passed to the next filter rule before an

No

 

action is taken; if No, the packet is disposed of according to the

 

 

action fields.

 

 

If More is Yes, then Action Matched and Action Not Matched

 

 

will be N/A.

 

Log

Press [SPACE BAR] and then [ENTER] to select a logging

None

 

option from the following:

Action

 

None – No packets will be logged.

Matched

 

Action Matched - Only packets that match the rule parameters

Action Not

 

will be logged.

Matched

 

Action Not Matched - Only packets that do not match the rule

Both

 

parameters will be logged.

 

 

Both – All packets will be logged.

 

 

 

 

Action Matched

Press [SPACE BAR] and then [ENTER] to select the action for a

Check Next

 

matching packet.

Rule

 

 

Forward

 

 

Drop

 

 

 

Action Not Matched

Press [SPACE BAR] and then [ENTER] to select the action for a

Check Next

 

packet not matching the rule.

Rule

 

 

Forward

 

 

Drop

 

 

 

When you have Menu 21.1.1.1 - TCP/IP Filter Rule configured, press [ENTER] at the message “Press ENTER to Confirm” to save your configuration, or press [ESC] to cancel. This data will now be displayed on Menu 21.1.1 - Filter Rules Summary.

The following figure illustrates the logic flow of an IP filter.

Chapter 27 Filter Configuration

262