Establishing security
192 Avaya VPNmanager Configuration Guide Release 3.7
4. From the drop-down list, select Packet Filtering, then click GO to open the Policy Manager
for Packet Filtering.
5. Click Advanced to open the Packet Filter Rule-Advanced dialog box.
6. Use
Table 12
for determining which option you want.
7. Click OK to return to the Policy Manager for Packet Filtering.
8. Click Save to save your work.
Marking packets for differentiated services (QoS)
If your network is running Differentiated Services, a VSU can be configured to mark specific IP
packets for specific types of services.
Table 12: Packet Filter rule-advanced options
Option
Description
Permit all non VPN traffic
Select this button to permit all non VPN packets.
Deny all IP non VPN traffic
Select this button to block all IP non VPN packets.
Deny all non VPN traffic
Select this button to block all non VPN packets.
Drop all IP fragments
Select this check box to block all IP packets that
have been fragmented. See
Path MTU
Discovery on page 201
for information about
packet fragmentation.
Drop all Short IP Packets
Select this check box to block all IP packets that
are unusually small. The following are considered
short packets.
●
IP packets shorter than 20 bytes.
●
TCP packets shorter than 40 bytes.
●
UDP packets shorter than 28 bytes.
●
ICMP packets shorter than 28 bytes.
Keep Filter Statistics
Select this check box if you want to send the
“packet filtering log” to a common SNMP
manager. The manager that is used is configured
in the
Routing
.
Summary of Contents for 3.7
Page 1: ...VPNmanager Configuration Guide Release 3 7 670 100 600 Issue 4 May 2005...
Page 4: ......
Page 20: ...Preface 20 Avaya VPNmanager Configuration Guide Release 3 7...
Page 32: ...Overview of implementation 32 Avaya VPNmanager Configuration Guide Release 3 7...
Page 53: ...Preferences Issue 4 May 2005 53 Figure 16 Tunnel End Point Policy...
Page 54: ...Using VPNmanager 54 Avaya VPNmanager Configuration Guide Release 3 7...
Page 244: ...Using advanced features 244 Avaya VPNmanager Configuration Guide Release 3 7...
Page 292: ...Upgrading firmware and licenses 292 Avaya VPNmanager Configuration Guide Release 3 7...