ETHERLINE
®
ACCESS NF04T | Version 1 | 04/16/20
32
Example
:
A PC in the production network (WAN) has the IP address 10.10.1.11 (e.g. a visualization).
This PC should be able to access the CPU with
the IP address 10.10.1.30 within the LAN via
the port 102 with the help of the TCP protocol.
Now enter the following rule and save it with the
button.
Source IP
indicates the IP address of the active device in the production network (WAN).
Destination IP
the addressed device in the machine network (LAN).
The filter rules can be defined for one protocol type with
protocol
“TCP” or “UPD”.
Destination Ports
indicates the ports to which the filter rules apply.
If a filter rule applies to several or even all ports, this can be simply defined in the “Destination Ports” field. A list of
ports is indicated separated by commas: “80,443,1194”. A port range can be indicated with a colon: “4000:5000”
or “1:65535” for all ports. Combinations of this are also possible: “80,443,4000:5000.”
It is also possible to configure the access of several participants with one another. An IP range can be defined with
a dash: “10.10.1.10-10.10.1.20“. A list of IP addresses is indicated with commas:
“10.10.1.10,10.10.1.15,10.10.1.20”.
Machine network
10.10.1.0/24
10.10.1.30
10.10.1.31
10.10.1.50
10.10.1.100
10.10.1.32
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
0
1
2
3
4
5
6
7
P4 LAN
P1 WAN
P2 LAN
P3 LAN
Ext. V DC
18 ... 30 V
+ FE IN1 IN2
–
FCN
RST
PWR
RDY
ACT
USR
ETHERLINE
®
ACCESS
NAT/FIREWALL
10.10.1.0/24
Internal (LAN)
External (WAN)
Company network
10.10.1.10
10.10.1.20