134
Chapter 11 Filter configuration
NN47923-501
Figure 59
Outgoing packet filtering process
For incoming packets, your Business Secure Router applies data filters only.
Packets are processed depending upon whether a match is found. The following
sections describe how to configure filter sets.
Filter Structure
A filter set consists of one or more filter rules. Usually, you group related rules,
for example, all the rules for NetBIOS, into a single set and give it a descriptive
name. With the Business Secure Router, you can configure up to twelve filter sets
with six rules in each set, for a total of 72 filter rules in the system. You cannot
mix device filter rules and protocol filter rules within the same set. You can apply
up to four filter sets to a particular port to block multiple types of packets. With
each filter set having up to six rules, you can have a maximum of 24 rules active
for a single port.
Sets of factory default filter rules are configured in menu 21 to prevent NetBIOS
traffic from triggering calls and to prevent incoming Telnet sessions. A summary
of their filter rules is shown in the figures that follow.
Figure 60
illustrates the logic flow when executing a filter rule. Also see
Figure 64
for the logic flow when executing an IP filter.
Data
Filtering
O
utgoing
Packet
D
rop
packet
Built-in
default
C
all Filters
U
ser-defined
Call Filters
(if applicable)
Initiate call
if line not up
Active Data
Send packet
and reset
Idle Tim
er
O
r
O
r
Drop packet
if line not up
D
rop packet
if line not up
Send packet
but do not reset
Idle Tim
er
Send packet
but do not reset
Idle Tim
er
M
atch
M
atch
M
atch
No
m
atch
N
o
m
atch
N
o
m
atch
C
all Filtering
Содержание 252
Страница 13: ...Contents 13 Nortel Business Secure Router 252 Configuration Advanced SIP Register Server 337 RTP 337 Index 341 ...
Страница 14: ...14 Contents NN47923 501 ...
Страница 20: ...20 Figures NN47923 501 ...
Страница 24: ...24 Tables NN47923 501 ...
Страница 30: ...30 Preface NN47923 501 ...
Страница 42: ...42 Chapter 1 Getting to know your Nortel Business Secure Router 252 NN47923 501 ...
Страница 48: ...48 Chapter 2 Introducing the SMT NN47923 501 SMT menus at a glance Figure 6 SMT overview ...
Страница 72: ...72 Chapter 3 WAN and Dial Backup Setup NN47923 501 ...
Страница 80: ...80 Chapter 4 LAN setup NN47923 501 ...
Страница 84: ...84 Chapter 5 Internet access NN47923 501 ...
Страница 98: ...98 Chapter 6 Remote Node setup NN47923 501 ...
Страница 102: ...102 Chapter 7 IP Static Route Setup NN47923 501 ...
Страница 130: ...130 Chapter 9 Network Address Translation NAT NN47923 501 ...
Страница 156: ...156 Chapter 12 SNMP Configuration NN47923 501 ...
Страница 178: ...178 Chapter 14 System information and diagnosis NN47923 501 ...
Страница 198: ...198 Chapter 15 Firmware and configuration file maintenance NN47923 501 ...
Страница 212: ...212 Chapter 17 Remote Management NN47923 501 ...
Страница 232: ...232 Appendix B Triangle Route NN47923 501 ...
Страница 252: ...252 Appendix D PPPoE NN47923 501 ...
Страница 256: ...256 Appendix E Hardware specifications NN47923 501 ...
Страница 266: ...266 Appendix F IP subnetting NN47923 501 ...
Страница 308: ...308 Appendix H NetBIOS filter commands NN47923 501 ...
Страница 332: ...332 Appendix K Brute force password guessing protection NN47923 501 ...