User Manual
Geneko GWR High Speed Router Series
127
4.
Establishing of IPSec tunnel is allowed
Firewall has to allow IKE and ESP protocol for IPSec tunnel establishment. If NAT traversal is used one additional
port has to be allowed. All these rules are predefined and they have priorities 10, 11 and 12 in default firewall
configuration (they are named as
Allow IPSec tunnels on ppp_0 –protocol, IKE and NATt
). As these rules are already
configured it is enough just to enable them to have IPSec passed through firewall.
Figure 134 – IPSec firewall rules
These three rules are enabled in following way:
-
Select EDIT of the rule
-
Enable: selected
-
SAVE and exit
5.
SSH access is allowed from IP range 212.62.38.210-220
New rule should be added by selecting ADD NEW RULE button. Policy should be configured in following way:
-
Rule name: Allow SSH
-
Enable: selected
-
Chain: INPUT
-
Service: Custom
-
Protocol: TCP
-
Port: Custom; 22
-
Input interface: ppp_0
-
Source address: Range ; 212.62.38.210 : 212.62.38.220
-
Destination address: Any
-
Packet state: NEW
-
Policy: ACCEPT
After configuration is finished SAVE button should be selected and user is returned to main configuration page.
Priority of rule
is changed by selecting number in drop-down menu. In this example number 6 is selected.
6.
WEB access is allowed from 212.62.38.210 IP address
In default firewall configuration rule for allowing WEB traffic is predefined (rule with priority 4, named
Allow
HTTP on ppp_0
) This rule can be used in example with additional restriction in source IP address to 212.62.38.210.
Policy should be configured in following way:
-
Enable: selected
-
Source address: Single IP; 212.62.38.210
-
All other settings should remain the same like in the picture below
Summary of Contents for GWR High Speed Router Series
Page 1: ...GWR High Speed Cellular Router Series User Manual version 1 1 Date June 2014...
Page 26: ...User Manual Geneko GWR High Speed Router Series 26 Figure 17 DHCP Server configuration page...
Page 61: ...User Manual Geneko GWR High Speed Router Series 61 Figure 38 Modbus gateway configuration page...