Configuration Guide
100
Configuring Firewall
Configuration Examples
3.3 Example for Access Control
3.3.1 Network Requirements
In the diagram below, the R&D and some other departments are connected to a layer 2 switch
and access the internet via the router. To limit the acts of the R&D department users, such as
sending emails with the exterior mailbox, it is required that the R&D users can only visit websites
via HTTP and HTTPs on the internet at any time. For other departments, there is no limitation.
Figure 3-1
Network Topology
Layer 2 Switch
Router
LAN
192.168.0.1/24
WAN
1.1.1.2
Internet
R&D Department
192.168.0.10/24-192.168.0.120/24
Other Departments
3.3.2 Configuration Scheme
To meet these requirements, we can configure Access Control rules on the router to filter
the specific types of packets from R&D department: only the HTTP and HTTPs packets are
allowed to be sent to the internet, and other types of packets are not allowed. The configuration
overview is as follows:
1) Add an IP group for the R&D department in the
Preferences
module.
2) By default, the HTTP service type already exists, and you need to add HTTPs to the Service
Type list in the
Preferences
module.
3) Create two rules to allow the HTTP and HTTPs packets from the R&D department to be sent
to the WAN.
Содержание TL-R470T Plus
Страница 1: ...Configuration Guide 1910012201 REV9 0 0 June 2017 TL R470T TL R480T ...
Страница 9: ...Part 1 Viewing Status Information CHAPTERS 1 System Status 2 Traffic Statistics ...
Страница 89: ...Part 5 Configuring Firewall CHAPTERS 1 Firewall 2 Firewall Configuration 3 Configuration Examples ...