
○
Trap destination 2
SNMP trap messages can be sent simultaneously to two different destinations.
Firewall
•
IP (L3)
List box: Off, On
Note
The L3 Firewall may be activated in both the Router and Bridge modes.
Default = Off
If “
On
”, a standard Layer 3 Linux firewall is activated.
○
Port
– a range of port numbers can be entered. E.g. 2000-2120.
○
Connection state
– state-firewall active only for TCP protocol.
○
New
– rrelates to the first packet when a TCP connection starts (Request from TCP client to
TCP server for opening a new TCP connection). Used e.g. for allowing to open TCP only from
RipEX network to outside.
○
Established
– relates to an already existing TCP connection. Used e.g. for allowing to get replies
for TCP connections created from RipEX network to outside.
○
Related
– a connection related to the "Established" one. e.g. FTP typically uses 2 TCP connec-
tions – control and data - where data connection is created automatically using dynamic ports.
Note
1.
L2/L3 firewall settings do not impact the local ETH access, i.e. the settings
never deny access to a locally connected RipEX (web interface, ping, ...).
2.
Ports 443 and 8889 are used internally for service access. Exercise caution
when making rules which may affect datagrams to/from these ports in L3 Firewall
settings. Management connection to a remote RipEX may be lost when another
RipEX acts as a router along the management packets route and port 443 (or
8889) is disabled in firewall settings of that routing RipEX (RipEX uses iptables
"forward"). When this happens, you have to use the Reset button on the bottom
side of the misconfigured RipEX (keep it pressed for 15 sec.) in order to set
Default access. It restores the default Ethernet IP, default password, sets the
L3 Firewall to Off, sets ARP proxy&VLAN settings to Off and Ethernet speed
to Auto.
3.
L3 Firewall settings do not impact packets received and redirected from/to Radio
channel. The problem described in Note 2 will not happen when the affected
RipEX router is a radio repeater, i.e. when it uses solely the radio channel for
both the input and output.
•
MAC (L2)
List box: Off, On
Default = Off
If "
On
" and when in the
Router mode
, simplified Layer 2 Linux firewall is activated:
○
Filter mode
List box: Blacklist, Whitelist
Default = Blacklist
■
Blacklist
97
© RACOM s.r.o. – RipEX Radio modem & Router
Advanced Configuration
Содержание RipEX 1.12.0
Страница 2: ......
Страница 172: ...RipEX Radio modem Router RACOM s r o 172 Safety environment licensing...
Страница 173: ...173 RACOM s r o RipEX Radio modem Router Safety environment licensing...
Страница 174: ...Fig 10 2 ATEX Certificate RipEX RipEX Radio modem Router RACOM s r o 174 Safety environment licensing...
Страница 175: ...175 RACOM s r o RipEX Radio modem Router Safety environment licensing...
Страница 176: ...RipEX Radio modem Router RACOM s r o 176 Safety environment licensing...
Страница 186: ...186...
Страница 187: ...Appendix C Revision History 187 RACOM s r o RipEX Radio modem Router Revision History...