76
rules. Each rule is assigned an ordinal number, allowing up to 10 for each rule.
Considering the complexity of firewall Settings, the following is an example to illustrate:
Table 23 - Network Firewall
Parameter
Description
Enable Input Rules
Indicates that the input rule application is enabled.
Enable Output Rules
Indicates that the output rule application is enabled.
Input/Output
To select whether the currently added rule is an input or output rule.
Deny/Permit
To select whether the current rule configuration is disabled or allowed;
Protocol
There are four types of filtering protocols: TCP | UDP | ICMP | IP.
Src Port Range
Filter port range
Src Address
Source address can be host address, network address, or all addresses
0.0.0.0; It can also be a network address similar to *.*.*.0, such as:
192.168.1.0.
Dst Address
The destination address can be either the specific IP address or the full
address 0.0.0.0; It can also be a network address similar to *.*.*.0, such as:
192.168.1.0.
Src Mask
Is the source address mask. When configured as 255.255.255.255, it
means that the host is specific. When set as 255.255.255.0, it means that a
network segment is filtered.
Dst Mask
Is the destination address mask. When configured as 255.255.255.255, it
means the specific host. When set as 255.255.255.0, it means that a
network segment is filtered.
After setting, click [
Add
] and a new item will be added in the firewall input rule, as shown in the figure below:
Picture 49 - Firewall Input rule table
Then select and click the button [
Apply
].
In this way, when the device is running: ping 192.168.1.118, the packet cannot be sent to 192.168.1.118
because the output rule is forbidden. However, the other IP of the ping 192.168.1.0 network segment can still
receive the response packet from the destination host normally.
Summary of Contents for H3W
Page 1: ...H5W H3W User Manual Software Version 2 4 2 Release Date 2021 02 4 ...
Page 11: ...12 4 3 H3W Packing Contents ...
Page 12: ...13 ...
Page 18: ...19 ...
Page 80: ...81 ...