342
3Com
®
VCX V7111 VoIP Gateway User Guide
Internal Firewall
The V7111 gateway accommodates an internal access list facility, allowing the security
administrator to define network traffic filtering rules. The access list provides the following
features:
Block traffic from known malicious sources
Only allow traffic from known friendly sources, and block all others
Mix allowed and blocked network sources
Limit traffic to a predefined rate (blocking the excess)
Limit traffic to specific protocols, and specific port ranges on the device
The access list consists of a table with up to 50 ordered lines. For each packet received on
the network interface, the table is scanned from the top until a matching rule is found (or the
table end is reached). This rule can either block the packet or allow it; however it is important
to note that subsequent rules are not scanned. If the table end is reached without a match,
the packet is accepted.
Each rule is composed of the following fields (described in
Table 63
):
IP address (or DNS name) of source network
IP network mask
Destination UDP/TCP ports (on this device)
Protocol
type
Maximum packet size, byte rate per second, and allowed data burst
Action upon match (allow or block)
Figure 134
shows an example of an access list definition using
ini
file:
Figure 134
Example of an Access List Definition using
ini
File
[ ACCESSLIST ]
FORMAT AccessList_Index = AccessList_Source_IP, AccessList_Net_Mask,
AccessList_Start_Port, AccessList_End_Port, AccessList_Protocol,
AccessList_Packet_Size, AccessList_Byte_Rate, AccessList_Byte_Burst,
AccessList_Allow_Type;
AccessList 10 = mgmt.customer.com, 255.255.255.255, 0, 80, tcp, 0, 0, 0,
allow ;
AccessList 15 = 192.0.0.0, 255.0.0.0, 0, 65535, any, 0, 40000, 50000,
block ;
AccessList 20 = 10.31.4.0, 255.255.255.0, 4000, 9000, any, 0, 0, 0, block
;
AccessList 22 = 10.4.0.0, 255.255.0.0, 4000, 9000, any, 0, 0, 0, block ;
[ \ACCESSLIST ]
Summary of Contents for VCX V7111
Page 30: ...30 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 44: ...44 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 53: ...3Com VCX V7111 VoIP Gateway User Guide 53 Readers Notes ...
Page 54: ...54 3Com VCX V7111 VoIP Gateway User Guide ...
Page 211: ...3Com VCX V7111 VoIP Gateway User Guide 211 Figure 76 IP Connectivity Screen ...
Page 235: ...3Com VCX V7111 VoIP Gateway User Guide 235 Readers Notes ...
Page 236: ...236 3Com VCX V7111 VoIP Gateway User Guide ...
Page 240: ...240 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 245: ...3Com VCX V7111 VoIP Gateway User Guide 245 Readers Notes ...
Page 246: ...246 3Com VCX V7111 VoIP Gateway User Guide ...
Page 281: ...3Com VCX V7111 VoIP Gateway User Guide 281 Readers Notes ...
Page 282: ...282 3Com VCX V7111 VoIP Gateway User Guide ...
Page 298: ...298 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 315: ...3Com VCX V7111 VoIP Gateway User Guide 315 Readers Notes ...
Page 316: ...316 3Com VCX V7111 VoIP Gateway User Guide ...
Page 319: ...3Com VCX V7111 VoIP Gateway User Guide 319 Readers Notes ...
Page 320: ...320 3Com VCX V7111 VoIP Gateway User Guide ...
Page 346: ...346 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 351: ...3Com VCX V7111 VoIP Gateway User Guide 351 Readers Notes ...
Page 352: ...352 3Com VCX V7111 VoIP Gateway User Guide ...
Page 376: ...376 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 386: ...386 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 394: ...394 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 396: ...396 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 405: ...3Com VCX V7111 VoIP Gateway User Guide 405 Reader s Notes ...
Page 406: ...406 3Com VCX V7111 VoIP Gateway User Guide ...
Page 410: ...410 3Com VCX V7111 VoIP Gateway User Guide ...
Page 426: ...426 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 432: ...432 3Com VCX V7111 VoIP Gateway User Guide Figure 153 Prerecorded Tones Screen ...
Page 452: ...452 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...
Page 456: ...456 3Com VCX V7111 VoIP Gateway User Guide Readers Notes ...