Page 153 of 226
Version: 3.3.5
– DR05 – 23.03.2017
Security settings (continued)
WAN>LAN
18.2
This setting governs the incoming data traffic, i.e. the following settings only apply to data traffic arriving from outside
the network.
“WAN” is always the currently active interface with the Internet as far as the
mbNET
firewall is concerned.
The following rule is determined by the setting under
“Network – Internet”:
The WAN Ethernet connection is the interface with the Internet here. The firewall therefore checks the data
traffic from the WAN Ethernet to the LAN Ethernet.
Internet Connection: Internet via Modem
The modem is the interface with the Internet here. The firewall therefore checks the data traffic from the mo-
dem to the LAN Ethernet. All data traffic on the WAN Ethernet interface is denied with this setting.
Internet Connection: Internet via WAN
The
“DSL data traffic” via the WAN Ethernet is the interface with the Internet here. The firewall therefore
checks the data traffic from the DSL modem to the LAN Ethernet. All other data traffic on the WAN Ethernet in-
terface is denied with this setting.
In the case of devices with a WAN Ethernet interface, this can be explicitly specified as the firewall interface
under the
“WAN interface” drop-down field.
Label
Description
Enable
Check the box by clicking it to enable the subsequent settings after they are saved.
Action
The following options are available for selection:
Drop
: If this option is selected, it means that no data packets can pass and the packets
are also deleted immediately. The sender is not notified about the whereabouts of the data
packets.
Reject
: If this option is selected, the data packets are rejected. The sender is notified that
the data packets have been rejected.
Accept
: If this option is selected, the data packets can pass.
WAN interface
This setting defines the WAN interface to which the rule is to be applied.
„Internet“ or
„WAN Ethernet“ can be selected.
Source IP
Here, enter the IP for whose incoming data packets one of the set actions is to be execut-
ed.
If you leave the field blank, the set action applies to all IP addresses.
Source Port
Enter the port via which the data packets arrive here.
Protocol
The following options are available for selection:
All
: The set rule applies to all protocols.
tcp
: The set rule only applies to the TCP protocol.
udp
: The set rule only applies to the UDP protocol.
icmp
: The set rule only applies to the ICMP protocol.
Destination IP
Enter the IP to which the data packets are to be forwarded here.
Destination Port
Enter the port via which the data packets are forwarded here.
Содержание mbNET MDH 810
Страница 12: ...Page 12 of 226 Version 3 3 5 DR05 23 03 2017 4 Technical Data...
Страница 135: ...Page 135 of 226 Version 3 3 5 DR05 23 03 2017 RS232 485 serial interfaces 17 2...
Страница 144: ...Page 144 of 226 Version 3 3 5 DR05 23 03 2017 Add PC PG station 17 4 5 Now you need to add a PC PG station...
Страница 201: ...Page 201 of 226 Version 3 3 5 DR05 23 03 2017 NAT 22 3 1 2...
Страница 202: ...Page 202 of 226 Version 3 3 5 DR05 23 03 2017 Status Modem 22 4 Note Not available at mbNET variants with WLAN...
Страница 214: ...Page 214 of 226 Version 3 3 5 DR05 23 03 2017 23 Extras LUA 23 1 You can activate LUA to write and execute LUA scripts...