
Firewall
Firewall configuration
AnywhereUSB® Plus User Guide
372
Firewall configuration
Firewall configuration includes the following configuration options:
n
Zones
: A zone is a firewall access group to which network interfaces can be added. You then
use zones to configure packet filtering and access control lists for interfaces that are included
in the zone. Preconfigured zones include:
l
Any
: Matches any network interface, even if they are not assigned to this zone.
l
Loopback
: Zone for interfaces that are used for communication between processes
running on the device.
l
Internal
: Used for interfaces connected to trusted networks. By default, the firewall will
allow most access from this zone.
l
External
: Used for interfaces to connect to untrusted zones, such as the internet. This zone
has Network Address Translation (NAT) enabled by default. By default, the firewall will
block most access from this zone.
l
Edge
: Used for interfaces connected to trusted networks, where the device is a client on
the edge of the network rather than a router or gateway.
l
Setup
: Used for interfaces involved in the initial setup of the device. By default, the firewall
will only allow this zone to access administration services.
l
IPsec
: The default zone for IPsec tunnels.
l
Dynamic routes
: Used for routes learned using routing services.
n
Port forwarding
: A list of rules that allow network connections to the AnywhereUSB Plus to be
forwarded to other servers by translating the destination address.
n
Packet filtering
: A list of packet filtering rules that determine whether to accept or reject
network connections that are forwarded through the AnywhereUSB Plus.
n
Custom rules
: A script that is run to install advanced firewall rules beyond the
scope/capabilities of the standard device configuration.
n
Quality Of Service
: Quality of Service (QOS) options for bandwidth allocation and policy-based
traffic shaping and prioritizing.
Create a custom firewall zone
In addition to the preconfigured zones, you can create your custom zones that can be used to
configure packet filtering and access control lists for network interfaces.
To create a zone:
É
WebUI
1. Log into the AnywhereUSB Plus WebUI as a user with full Admin access rights.
2. On the menu, click
System
. Under
Configuration
, click
Device Configuration
.
The
Configuration
window is displayed.
3. Click
Firewall
>
Zones
.
Содержание AnywhereUSB Plus
Страница 1: ...AnywhereUSB Plus User Guide Firmware version 21 8 ...
Страница 212: ...Interfaces Bridging AnywhereUSB Plus User Guide 212 ...
Страница 308: ...Services Configure the ping responder service AnywhereUSB Plus User Guide 308 iperf Done ...
Страница 509: ...File system Upload and download files AnywhereUSB Plus User Guide 509 sftp exit ...
Страница 604: ...Virtual Private Networks VPN IPsec AnywhereUSB Plus User Guide 604 ...
Страница 710: ...Command line interface Command line reference AnywhereUSB Plus User Guide 710 more path The file to view Syntax STRING ...
Страница 714: ...Command line interface Command line reference AnywhereUSB Plus User Guide 714 reboot Reboot the system Parameters None ...
Страница 775: ...Configure the AnywhereUSB Manager from the command line power cycle AnywhereUSB Plus User Guide 775 ...