ZyAIR Wireless Gateway Series User’s Guide

Figure 12-1 LAN to WAN Traffic

12.5.2 WAN to LAN Rules

WAN-to-LANrules are Internet to your local network firewall rules. The default is to block all traffic from the Internet to your local network.

How can you forward certain WAN to LAN traffic? You may allow traffic originating from the WAN to be forwarded to the LAN by:

Configuring NAT port forwarding rules in the web configurator SUA Server screen or SMT NAT menus.

Configuring One-to-Oneand Many-One-to-OneNAT mapping rules in the web configurator Address Mapping screen or SMT NAT menus.

Configuring WAN or LAN & WAN access for services in the Remote Management screens or SMT menus. When you allow remote management from the WAN, you are actually configuring WAN-to- WAN/ZyAIR firewall rules. WAN-to-WAN/ZyAIR firewall rules are Internet to the ZyAIR WAN interface firewall rules. The default is to block all such traffic. When you decide what WAN-to-LAN packets to log, you are in fact deciding what WAN-to-LAN and WAN-to-WAN/ZyAIR packets to log.

Allow NetBIOS traffic from the WAN to the LAN using the WAN IP web screen or SMT menu 24.8 commands.

Forwarded WAN-to-LANpackets are not considered alerts.

Firewall Screens

12-5