Chapter 5:
Firewall, Failover and Out of Band
118
Console Server & RIM Gateway User Manual
Action: Block
The firewall rules are processed in a set order- from top to bottom. So rule placement is important.
For
example with the following rules, all traffic coming in over the
Network Interface
is blocked except when it comes from two
nominated IP addresses (
SysAdmin
and
Tony
):
To allow all incoming traffic on all
interfaces from the SysAdmin:
To allow all incoming
traffic from Tony:
To block all incoming traffic
from the Network Interface:
Interface
Any
Any
Network Interface
Port Range
Any
Any
Any
Source MAC
Any
Any
Any
Source IP
IP address of SysAdmin
IP address of Tony
Any
Destination IP
Any
Any
Any
Protocol
TCP
TCP
TCP
Direction
Ingress
Ingress
Ingress
Action
Accept
Accept
Block
However if the
Rule Order
above was to be
changed so the “
Block Everyone Else
” rule was second on the list then the
traffic coming in over the
Network Interface
from
Tony
would be blocked.
Содержание ACM5000
Страница 3: ......
Страница 10: ...Table of Contents 10 Console Server RIM Gateway User Manual...
Страница 11: ......
Страница 94: ...Chapter 5 Firewall Failover and Out of Band 94 Console Server RIM Gateway User Manual...
Страница 119: ......
Страница 149: ......
Страница 191: ......
Страница 205: ......
Страница 225: ......
Страница 303: ......
Страница 313: ......
Страница 323: ......