ZyAIR G-2000 Plus User’s Guide
323
Chapter 29 Filter Configuration
Figure 177
Example Filter Rules Summary: Menu 21.1.3
This shows you that you have configured and activated (
A = Y
) a TCP/IP filter rule (
Type =
IP
,
Pr = 6
) for destination telnet ports (
DP = 23
).
M = N
means an action can be taken immediately. The action is to drop the packet (
m = D
) if
the action is matched and to forward the packet immediately (
n = F
) if the action is not
matched no matter whether there are more rules to be checked (there aren’t in this example).
After you’ve created the filter set, you must apply it.
1
Enter 11 from the main menu to go to menu 11.
2
Go to the
Edit Filter Sets
field, press
[SPACE BAR]
to select
Yes
and press
[ENTER]
.
3
This brings you to menu 11.5. Apply a filter set (our example filter set 3).
4
Press
[ENTER
] to confirm after you enter the set numbers and to leave menu 11.5.
29.4 Filter Types and NAT
There are two classes of filter rules,
Generic Filter
(Device) rules and protocol filter (
TCP/
IP
) rules. Generic filter rules act on the raw data from/to LAN and WAN. Protocol filter
rules
act on the IP packets. Generic and TCP/IP filter rules are discussed in more detail in the next
section. When NAT (Network Address Translation) is enabled, the inside IP address and port
number are replaced on a connection-by-connection basis, which makes it impossible to know
the exact address and port on the wire. Therefore, the ZyAIR applies the protocol filters to the
“native” IP address and port number before NAT for outgoing packets and after NAT for
incoming packets. On the other hand, the generic, or device filters are applied to the raw
packets that appear on the wire. They are applied at the point when the ZyAIR is receiving and
sending the packets; i.e. the interface. The interface can be an Ethernet port or any other
hardware port. The following diagram illustrates this.
Menu 21.1.3 - Filter Rules Summary
# A Type Filter Rules M m n
- - ---- --------------------------------------------------------- - - -
1 Y IP Pr=6, SA=0.0.0.0, DA=0.0.0.0, DP=23 N D F
2 N
3 N
4 N
5 N
6 N
Enter Filter Rule Number (1-6) to Configure:
Summary of Contents for ZyAIR G-2000 Plus
Page 1: ...ZyAIR G 2000 Plus 802 11g Wireless 4 port Router User s Guide Version 3 60 12 2004...
Page 2: ......
Page 8: ...ZyAIR G 2000 Plus User s Guide 7 Customer Support...
Page 22: ...ZyAIR G 2000 Plus User s Guide 21 Table of Contents...
Page 36: ...ZyAIR G 2000 Plus User s Guide 35 Preface...
Page 44: ...ZyAIR G 2000 Plus User s Guide 43 Chapter 1 Getting to Know Your ZyAIR...
Page 88: ...ZyAIR G 2000 Plus User s Guide 87 Chapter 6 Wireless Configuration and Roaming...
Page 124: ...ZyAIR G 2000 Plus User s Guide 123 Chapter 8 Internal RADIUS Server...
Page 156: ...ZyAIR G 2000 Plus User s Guide 155 Chapter 11 Static Route Screens...
Page 192: ...ZyAIR G 2000 Plus User s Guide 191 Chapter 14 Firewalls...
Page 210: ...ZyAIR G 2000 Plus User s Guide 209 Chapter 15 Firewall Screens...
Page 214: ...ZyAIR G 2000 Plus User s Guide 213 Chapter 16 Content Filtering...
Page 221: ...ZyAIR G 2000 Plus User s Guide Chapter 17 Certificates 220 Figure 93 My Certificate Create...
Page 224: ...ZyAIR G 2000 Plus User s Guide 223 Chapter 17 Certificates Figure 94 My Certificate Details...
Page 230: ...ZyAIR G 2000 Plus User s Guide 229 Chapter 17 Certificates Figure 97 Trusted CA Details...
Page 235: ...ZyAIR G 2000 Plus User s Guide Chapter 18 Log Screens 234 Figure 99 Log Settings...
Page 240: ...ZyAIR G 2000 Plus User s Guide 239 Chapter 18 Log Screens...
Page 252: ...ZyAIR G 2000 Plus User s Guide 251 Chapter 19 Maintenance Figure 114 Restart Screen...
Page 264: ...ZyAIR G 2000 Plus User s Guide 263 Chapter 22 Menu 2 WAN Setup...
Page 274: ...ZyAIR G 2000 Plus User s Guide 273 Chapter 23 LAN Setup...
Page 280: ...ZyAIR G 2000 Plus User s Guide 279 Chapter 24 Internet Access...
Page 290: ...ZyAIR G 2000 Plus User s Guide 289 Chapter 25 Remote Node Configuration...
Page 338: ...ZyAIR G 2000 Plus User s Guide 337 Chapter 32 System Security...
Page 350: ...ZyAIR G 2000 Plus User s Guide 349 Chapter 33 System Information and Diagnosis...
Page 362: ...ZyAIR G 2000 Plus User s Guide 361 Chapter 34 Firmware and Configuration File Maintenance...
Page 376: ...ZyAIR G 2000 Plus User s Guide 375 Chapter 37 Call Scheduling...
Page 380: ...ZyAIR G 2000 Plus User s Guide 379 Appendix B...
Page 392: ...ZyAIR G 2000 Plus User s Guide 391 Appendix C...
Page 396: ...ZyAIR G 2000 Plus User s Guide 395 Appendix D...
Page 404: ...ZyAIR G 2000 Plus User s Guide 403 Appendix E...
Page 406: ...ZyAIR G 2000 Plus User s Guide 405 Appendix F...
Page 413: ...ZyAIR G 2000 Plus User s Guide Appendix H 412 Figure 235 ESS Provides Campus Wide Coverage...
Page 414: ...ZyAIR G 2000 Plus User s Guide 413 Appendix H...
Page 418: ...ZyAIR G 2000 Plus User s Guide 417 Appendix I...
Page 430: ...ZyAIR G 3000 User s Guide 429 Index ZyNOS F W Version 351 ZyXEL s Firewall Introduction 179...