4-18
Cisco ONS 15327 User Documentation, R3.3
June 2002
Chapter 4 IP Networking
ONS 15327 IP Addressing Scenarios
Figure 4-13 Scenario 7: ONS 15327 Proxy Server with ENEs on multiple rings
shows the rules the ONS 15327 follows to filter packets when
Enable Firewall
is enabled. If
the packet is addressed to the ONS 15327, additional rules, shown in
, are applied. Rejected
packets are silently discarded.
NOC CTC
station
NOC LAN
97.1.1.x
Interface 0/0
97.1.1.1
Interface 0/1
86.1.1.1
Switch
ONS 15327
Gateway NE
ONS 15327
External NE
ONS 15327
External NE
IP 192.168.0.0/24
Central Office LAN
86.x.x.x
ONS 15327
Gateway NE
ONS 15327
External NE
Local CTC station
IP 10.10.10.10
ONS 15327
External NE
ONS 15327
External NE
IP 192.0..0.0/24
ONS 15327
External NE
78092
Table 4-3
Proxy Server Firewall Filtering Rules
Packets Arrive At
Accepted
XTC Ethernet
Interface
•
The ONS 15327 itself
•
The ONS 15327’s subnet broadcast address
•
Within the 224.0.0.0/8 network (reserved network used for standard multicast
messages)
•
255.255.255.255
DCC Interface
•
The ONS 15327 itself
•
An OSPF peer (another DCC-connected ONS 15327)
•
Within the 224.0.0.0/8 network
Summary of Contents for ONS 15327
Page 22: ...Contents xxii Cisco ONS 15327 User Documentation June 2002 I N D E X ...
Page 30: ...Figures xxviii Cisco ONS 15327 User Documentation June 2002 ...
Page 44: ...Procedures xlii Cisco ONS 15454 Installation and Operations Guide R3 2 June 2002 ...
Page 540: ...Glossary GL 16 Cisco ONS 15327 User Documentation R3 3 June 2002 ...