Page 72
of 90 | Version: 1.6.0 DR 03 (10.01.2017) - EN | 10.01.2017
12.3 Firewall
Navigation: Administration > Projects > Project Gama (selected project) > GamaRouter (selected device) >
Services > Firewall
Here you
•
define the global firewall settings (firewall secu-
rity levels) - therefor click on the edit icon
•
create firewall rules and manage them
- therefor click on "
Firewall
"
12.3.1
Firewall Settings
The Firewall Security offers you three different security levels:
Maximum security
All incoming packages (data from the Internet) are
rejected.
All outgoing packages (data from the LAN) are re-
jected except: DNS, FTP, IMAP, HTTP, HTTPS,
POP3, SMTP, Telnet, NTP
Normal security
All incoming packages (data from the Internet) are
rejected.
All outgoing packages (data from the LAN) are ac-
cepted.
Minimum security
All incoming packages (data from the Internet) are
accepted.
All outgoing packages (data from the LAN) are ac-
cepted.
A D V I C E
ATTENTION! The Minimum security option should only be set temporarily for test purposes, since it allows
all data traffic from inside to outside the network, as well as access from outside the network.
This setting puts the integrity of your device and the connected components at risk.
SNAT
If this checkbox is activated, SNAT forwards the incoming data traffic from Internet or VPN connections
transparently to the LAN network. Thus, all the data packages going to the LAN have the IP address of the
device as the sender address. This means that none of the LAN subscribers needs the device as a "gate-
way". This is a considerable advantage when integrating remote maintenance into existing network struc-
tures as it means that these structures do not need to be changed.