21
for special-purpose services. So a host on
the private network can be assigned the
IP address of the DMZ to provide services
to the hosts on the Internet. The network
administrator should be cautious of
adopting DMZ. If a host is on DMZ, it is
not protected by the firewall. And the
Residential Gateway will open all ports to
expose DMZ to the Internet. This may
expose the local network to a variety of
security risk.
Gateway(config)# applications
destination-ip [A.B.C.D]
[A.B.C.D]
Specify the IP address of the host on the
DMZ.
Gateway(config)# applications
source-ip [A.B.C.D] [1-254]
[A.B.C.D]
[1-254]
Specify an IP address range in the text
boxes so the DMZ will be exposed to the
IP address in the specified IP address
range only.
Gateway(config)# applications
source-ip any
Allow any IP address to expose the DMZ
to any IP address on the Internet.
No Command
Gateway(config)# no
applications dmz
Disable DMZ function.
Show Command
Gateway(config)# show
applications dmz
Shows the current status of DMZ.
2. Set up Port Forwarding function.
Command
Parameter
Description
Gateway(config)# applications
port-forwarding
Enable Port Forwarding function. A host
on the private network of the Residential
Gateway is invisible from the Internet for it
is protected by the firewall. Therefore,
when a server is on the private network,
its service will be inaccessible from the
Internet. To open the service to hosts on
the Internet, the network administrator
may adopt Port Forwarding feature. Port
Forwarding allows an IP address on the
private network to be accessed from an IP
address on the public network. It will
redirect packets from the public network
to a specified private IP address if the
packets meet the pre-condition of a port
forwarding rule.
Gateway(config)# applications
port-forwarding apply
Apply all the configured port forwarding
settings made.
Gateway(config-port-forwarding-
No.)# active
Enable the port forwarding rule.
Gateway(config-port-forwarding-
No.)# description [description]
[description]
Specify any remark on the rule up to 20
characters.
Gateway(config-port-forwarding-
[A.B.C.D] Specify the IP address of the server on
Содержание FWR5-3105 Series
Страница 1: ...1 FWR5 3105 Series Residential Gateway Network Management User s Manual Version 0 93...
Страница 170: ...170...