Refer
e
nc
e M
anu
al
for
the
Pr
oSafe
802.11
g
Wire
less
VPN Fir
e
wal
l FVG318
5-
6
F
ire
w
all
Pr
otection a
nd Conte
n
t
F
ilte
rin
g
BE
TA
Inb
ound Rule Exa
m
ple: Allowing a
V
ideoc
onference
from
Restricted Add
res
ses
If you
want to allow incoming vi
deoconferencing to be initiated fro
m a restri
cted
range of outside
IP
ad
dress
es, suc
h as
from a branch of
fic
e,
you ca
n crea
te an
inbound
rule. In the
exa
m
ple shown
in
Figu
re 5-4
, CU-SEE
ME connections
are allowed
only
from a specified range
of
external
IP
addres
ses. In
this cas
e,
w
e ha
ve
als
o specified logging of
an
y in
coming CU
-Se
eMe reque
sts that
do
no
t m
atch
the
a
llo
we
d pa
rame
ters.
F
ig
u
re
5
-4
:
Ru
le
e
x
amp
le
: a vi
de
o
co
n
fe
ren
c
e fro
m
re
st
rict
e
d
ad
d
res
se
s
Consi
derations fo
r I
nbound Rule
s
•
If your external IP addre
ss is
assig
ned
dy
namically
by
yo
ur ISP
, th
e IP add
ress may chan
ge
pe
riodically
as
the DH
CP
le
ase expire
s. Cons
ide
r using the Dya
m
ic DN
S fea
ture in
the
Adv
anced
men
us
so that
extern
al users can always
fin
d you
r
ne
two
rk.
•
If the IP addres
s of the
local se
rve
r
PC is
assig
ned
by
DHCP
, it
may ch
an
ge when
the PC i
s
rebo
oted.
T
o
av
oid
thi
s,
use the
Rese
rved
IP a
ddress
fe
ature
in
the LAN
IP me
nu to ke
ep the
PC’
s IP a
ddress constant.
•
E
ach loc
al PC must
acce
ss the local s
erver us
in
g the
PC’
s local LAN
addres
s (192.168.0.99 in
this example
). Attempts
by local PCs to ac
ces
s the se
rve
r
using the
e
xternal W
AN IP
ad
dress
will f
ail.