User Manual
Geneko GWR High Speed Router Series
53
Settings – Firewall – IP Filtering
TCP/IP traffic flow is controlled over IP address and port number through router’s interfaces in both
directions. With firewall options it is possible to create rule which exactly matches traffic of interest. Traffic can be
blocked or forward depending of action selected. It is important when working with firewall rules to have in mind
that traffic for router management should always be allowed to avoid problem with unreachable router. Firewall
rules are checked by priority from the first to the last. Rules which are after matching rule are skipped.
Firewall
Label
Description
Firewall General Settings
Enable
This field specifies if Firewall is enabled at the router
Add New Rule
Applies configured rules to router
Firewall rules
Priority
Firewall rules are evaluated from the top down. The first rule to match is executed
immediately and the rest are skipped
Name
Description of applied rule
Enabled
This field specifies if rule is enabled in the firewall
Chain
There are three options available in this section: INPUT (for traffic going to the
interface), OUTGOING (for traffic originated at the router going out of the interface)
and FORWARD (for traffic routed from one interface to another, originated outside
the router)
Service
Predefined list of well-known ports and Custom option for user defined services
Protocol
Type of protocol – TCP, UDP, UDPLITE, AH, SCTP, ESP, ICMP, Custom
Port
Number of port. Four options are available (FULL/UNDEF-all port numbers, RANGE -
for range of ports, CSV multiport - for defining more than one noncontinuous port
numbers, CUSTOM-for single port)
ICMP-type (ICMP
protocol is selected)
List of ICMP packet types are displayed. ICMP is filtered in general or by specific type.
Protocol number
(Custom protocol is
selected)
Protocol number is chosen between 1 and 255
Input Interface
Selection of firewall input inspection interface (when OUTPUT chain is selected this
field cannot be chosen)
Output Interface
Selection of firewall output inspection interface (when INPUT chain is selected this
field cannot be chosen)
Source address
This field specifies packets with source IP address on which firewall rule is applied
Destination address
This field specifies packets with destination IP address on which firewall rule is
applied
Inverted destination
address rule logic
For defined IP address in Source or Destination IP address inverts logic of the filter.
Instead of applying firewall rule on defined IP addresses all IP addresses EXCEPT
defined are covered by firewall rule.
Packet state
Selection of traffic by packet state. INVALID is for unrecognized packet state traffic
Policy
Options for firewall rule action: ACCEPT (forward traffic), REJECT (deny traffic with
ICMP error returned), DROP (drop traffic)
Reject-with
Select the reject type of the rule. The default error message is to send a port-
Содержание GWR High Speed Router Series
Страница 1: ...GWR High Speed Cellular Router Series User Manual version 1 1 Date June 2014...
Страница 17: ...User Manual Geneko GWR High Speed Router Series 17 Declaration of conformity Figure 7 Declaration of conformity...
Страница 26: ...User Manual Geneko GWR High Speed Router Series 26 Figure 17 DHCP Server configuration page...
Страница 61: ...User Manual Geneko GWR High Speed Router Series 61 Figure 38 Modbus gateway configuration page...