
CONFIGURATION
Page 56
User’s guide ref 9017409-01
SIG Router & VPN server
14 Firewall
14.1 Overview
The firewall filters IP packets between the WAN and the LAN interface of
the SIG router. It is divided in 3 particular filters :
•
The remote users
filters
The function of the remote users filters is to limit the IP domain an
authenticated remote user can reach when he connects to the SIG router
through the Internet.
The remote users filters filter the destination IP address and port number
of the IP packets included inside a PPTP or TLS or L2TP remote user
connection.
Thus the IP addresses checked by the remote users filters are LAN IP
addresses.
25 remote users filters can be created and assigned individually to each
of the users declared in the user list.
The source IP address of the packets is not checked by the remote users
filters because the filters apply to the remote users connections according
the login and password of the remote user checked when the remote user
connection is set.
•
The main filter
It filters IP packets whether carried inside one of the VPNs or outside a
VPN.
The main filter checks source and destination IP addresses and the
source and destination ports.
The main filter does not check the IP packets included in a remote user
connection. That packets are checked by the remote users filter.
The main filter does not check the IP packets defined in the “Port forwarding” table. That
packed are directly forwarded to the defined device (see
Port forwarding
).
•
The deny of service filter
is made to usual attacks coming from
the Internet. That filter cannot be configured.
Summary of Contents for SIG
Page 6: ......
Page 12: ......
Page 70: ......
Page 74: ...MAINTENANCE Page 74 User s guide ref 9017409 01 SIG Router VPN server ...
Page 80: ...APPENDIX2 VPN basic mechanisms Page 80 User s guide ref 9017409 01 SIG Router VPN server ...
Page 81: ......
Page 82: ......