Security planning
ptp-450 (July 2014)
2-91
Figure 26
Categorical protocol filtering
BootP
Client
BootP
Server
SNMP
IPv4
Multica
st
User
Defined
Port 1
SMB
User
Defined
Port 3
User
Defined
Port 2
PPPoE
ARP
All
Others
All
Other
IPv4
The following are example situations in which you can configure protocol filtering where NAT is disabled:
If you block a subscriber from only PPoE and SNMP, then the subscriber retains access to all other protocols
and all ports.
If you block PPoE, IPv4, and Uplink Broadcast, and you also check the
All others
selection, then only Address Resolution Protocol is not filtered.
The ports that are filtered as a result of protocol selections in the Protocol Filtering tab of the BHS are listed in
Table 46
Ports filtered per protocol selections
Protocol
Selected
Port Filtered (Blocked)
BHS
Destination Ports 137 TCP and UDP, 138 UDP, 139 TCP, 445 TCP
SNMP
Destination Ports 161 TCP and UDP, 162 TCP and UDP
Bootp Client
Source Port 68 UDP
Bootp Server
Source Port 67 UDP
Summary of Contents for PTP 450 series
Page 1: ...Cambium PTP 450 User Guide System Release 13 2...
Page 20: ......