Security Features
June 2004
© 2004 Foundry Networks, Inc.
15 - 53
Step 8:Verify the firewall policy for Security Zone DMZ:
Step 9: Verify that the FTP filter objects for Security Zone DMZ are created as configured:
Step 10: Create a default route out of the WAN:
Foundry/configure# firewall dmz
Foundry/configure/firewall dmz# object
Foundry/configure/firewall dmz/object# ftp-filter putdeny deny put
mkdir
Foundry/configure/firewall dmz/object# nat-pool ftpsrvr static
10.3.1.100
Foundry/configure/firewall dmz/object# exit
Foundry/configure/firewall dmz# policy 100 in address any any
193.168.94.221 32
Foundry/configure/firewall dmz/policy 100 in# apply-object nat-pool
ftpsrvr
Foundry/configure/firewall dmz/policy 100 in# apply-object ftp-filter
putdeny
Foundry/configure/firewall dmz/policy 100 in# exit
Foundry/configure/firewall dmz# exit
Foundry/configure# show firewall policy dmz
Advanced: S - Self Traffic, F - Ftp-Filter, H - Http-Filter,
R - Rpc-Filter, N - Nat-Ip/Nat-Pool, L - Logging,
E - Policy Enabled, M - Smtp-Filter
Pri Dir Source Addr Destination Addr Sport Dport Proto Action Advanced
--- --- ----------- ---------------- ----------------- ------ --------
100 in any 193.168.94.221/32 any any any PERMIT FNE
1022 out any any any any any PERMIT SE
1023 in any any any any any PERMIT SE
1024 out any any any any any PERMIT E
Foundry/configure# show firewall object ftp-filter dmz
Object Name Action Log Commands
----------- ------ --- --------
putdeny deny no put mkdir
Foundry/configure#
Foundry/configure# ip route 0.0.0.0 0 wan
Foundry/configure#
Summary of Contents for AR1202
Page 15: ...Foundry AR Series Router User Guide 1 6 2004 Foundry Networks Inc June 2004...
Page 23: ...Foundry AR Series Router User Guide 2 8 2004 Foundry Networks Inc June 2004...
Page 45: ...Foundry AR Series Router User Guide 3 22 2004 Foundry Networks Inc June 2004...
Page 111: ...Foundry AR Series Router User Guide 8 18 2004 Foundry Networks Inc June 2004...
Page 153: ...Foundry AR Series Router User Guide 9 42 2004 Foundry Networks Inc June 2004...
Page 181: ...Foundry AR Series Router User Guide 10 28 2004 Foundry Networks Inc June 2004...
Page 215: ...Foundry AR Series Router User Guide 12 10 2004 Foundry Networks Inc June 2004...
Page 291: ...Foundry AR Series Router User Guide 15 66 2004 Foundry Networks Inc June 2004...
Page 293: ...Foundry AR Series Router User Guide Index 2 2004 Foundry Networks Inc June 2004...