X4000
User’s Guide
335
Access Security
10
➤
Repeat these steps to define several entries for the selected NAT interface.
10.2.8
Filters (Access Lists)
IP filters (
➤➤
Access Lists
) in
X4000
are based on a concept of
➤➤
filters
,
rules and so-called chains. IP filters respond to incoming data packets, which
means they can allow or deny access to
X4000
for certain data.
Filters
A filter describes a certain part of the IP data traffic based on the source and/or
destination IP address,
➤➤
netmask
, protocol and source and/or destination
port. If you define a filter, you are telling
X4000
: "Watch out for all data packets
that match the following: ...".
Rule
You use a rule to tell
X4000
what to do with the data packets it has filtered out,
i.e. whether or not it should allow them to pass through. You can also define
several rules, which you arrange in the form of a chain to obtain a certain
sequence.
Chain
There are various approaches for the definition of rules and rule chains:
■
Allow all packets that are not explicitly prohibited, i.e.:
–
Deny all packets that match Filter 1.
–
Deny all packets that match Filter 2.
–
...
–
...
–
Allow the rest.
■
Allow only what is explicitly permitted, i.e.:
–
Allow all packets that match Filter 1.
–
Allow all packets that match Filter 2.
–
...
–
...
–
Deny the rest.
■
Combination of the two possibilities described above
Several rule chains can be created, either completely or partly separated
from each other. The common use of filters is possible and practicable.
Interface
You can also define a rule chain individually for each
X4000
interface.
Содержание X4000
Страница 4: ...4 X4000 User s Guide...
Страница 6: ...6 X4000 User s Guide Table of Contents...
Страница 14: ...14 X4000 User s Guide Table of Contents...
Страница 30: ...30 X4000 User s Guide Welcome 1...
Страница 34: ...34 X4000 User s Guide General Safety Precautions 2...
Страница 68: ...68 X4000 User s Guide Hardware Description and Installation 3...
Страница 92: ...92 X4000 User s Guide Configuration Requirements 4...
Страница 118: ...118 X4000 User s Guide Fast Configuration with the Configuration Wizard Basic Unit 6...
Страница 274: ...274 X4000 User s Guide Advanced Configuration of the Basic Unit with the Setup Tool 8 Confirm with OK Press SAVE...
Страница 362: ...362 X4000 User s Guide Configuration of Security Functions and Firewall 10...
Страница 374: ...374 X4000 User s Guide Configuration Management 11...
Страница 386: ...386 X4000 User s Guide Troubleshooting 12...
Страница 431: ...X4000 User s Guide 431 15 100 240 VAC 50 60 Hz BinTec Communications AG X4000 Router Multi Protokoll X4000 WAN...
Страница 433: ...X4000 User s Guide 433 15...
Страница 449: ...X4000 User s Guide 449 15...
Страница 468: ...468 X4000 User s Guide General Safety Precautions in 15 Different Languages 15...
Страница 495: ...X4000 User s Guide 495 Index WINS 225 246 X X 21 148 X 21 interface Configuring 148 Technical data 393 XIPR 353...
Страница 496: ...496 X4000 User s Guide Index...
Страница 498: ...498 X4000 User s Guide Document 71000L Version1 3...