
CONFIGURATION
Page 72
User manual ref. 9017009-02
3G-GPRS-EDGE router IPL-G12
20.2 Remote user filter
20.2.1 Filter structure
A filter
is a table made of several lines; each line is called a rule.
A rule defines what decision has to be made when the firewall receives a
particular IP frame from the wireless interface; the decision can be Reject
or Allow.
Each rule of the filter is made of two fields which define a data flow :
•
Service : Protocol (telnet, http…),
•
Host : destination IP@.
Moreover, to describe the decision to carry out if a data flow matches a
rule à filter policy has to be selected.
The policy can be
All is forbidden except what we specify.
Or
All is allowed except what we specify
The first policy is generally the right one because it is cautious.
Example :
Filter name :
Access to the device PLC1 (html and modbus)
Filter policy :
All is forbidden except what we specify
Rules list
Action Device Service
Allow PLC1
192.168.0.12
80
Allow
PLC1 192.168.0.12
Modbus 502