Refer
e
nc
e
Man
ual
for
the
Pr
oSafe
8
02.11
g
Wire
less
VPN F
irewa
ll FVG31
8
F
irewa
ll
Pr
otection an
d Conten
t Filter
ing
5
-5
BETA
Inbound Rules
(Port
Forwarding)
Bec
aus
e the FVG318 us
es Ne
tw
ork Address
T
ranslation (NA
T
), your ne
tw
ork pres
ents
only one
IP
ad
dress
to the Interne
t, and
outs
ide users ca
nn
ot directly
ad
dress a
ny
of your local compute
rs.
However
, by
defin
ing
an in
bo
un
d ru
le
yo
u can make a local server (for
ex
amp
le,
a
W
eb
serv
er
or
ga
m
e s
erv
er)
vis
ib
le
an
d a
vaila
bl
e
to th
e Inte
rn
et
. The rule
tel
ls
the fire
wa
ll to
d
irect in
bo
un
d
traf
fic for a particula
r service to one
loca
l se
rve
r
ba
sed on the destination port
number
. This
is al
so
kn
ow
n as
p
ort fo
rward
ing
.
Remember that allowing inbound
se
rvice
s opens holes in
your
FVG318
W
ireles
s VPN Fire
wall.
Only enable
those port
s tha
t a
re nec
ess
ary for
your ne
twor
k. F
ollowing are two application
examples of
inbo
un
d r
ules:
Inb
ound Rule Exa
m
ple: A Loc
al Public
W
eb Se
rve
r
If yo
u ho
st
a pub
lic
W
eb ser
ver
on
yo
ur local
ne
twork,
y
ou
can define a ru
le to
allo
w inb
ou
nd
W
eb
(HTTP)
requests from any outside IP
address
to the IP address of your
W
eb server
at
any t
ime of
day
. This rule is shown i
n
Fi
gure 5
-3
:
Figu
re 5-
3:
Rule exa
mple:
a
loc
a
l
p
ublic
W
eb ser
ver
Note
:
So
me
resid
en
tial bro
adban
d ISP
accou
nts d
o n
ot
all
ow yo
u
to ru
n an
y server
processes
(such as a W
eb or FTP server) from
yo
ur location.
Y
our ISP
may periodically
check for servers a
nd
may sus
pend
your acc
ou
nt if it discove
rs any active services
a
t
your location. If you are
unsure, refer
to
the Ac
ceptable
Use Polic
y of your ISP
.