HP 630n HP Jetdirect Print Servers - Administrator's Guide - Page 111

Limitations to rules, templates and services, IPsec/Firewall Rules

Page 111 highlights

Enter up to ten rules, each rule specifying the host addresses, services, and the action to take for those addresses and services. Depending on whether IPsec is supported by the print server and device, the following actions are available: ● Allow traffic. If IPsec/Firewall is supported, allow IP traffic that is not protected by the IPsec/Firewall policy. ● Drop traffic. Do not process (discard) the specified IP traffic. ● Require traffic to be protected with the IPsec/Firewall policy. You are prompted to configure an IPsec template indicating the IPsec authentication/encryption settings to apply to the specified IP traffic. See the following illustration. Figure 5-3 Use the IPsec Wizard to configure rules HP Jetdirect IPsec/Firewall Policy Use the IPsec/Firewall Wizard to Configure Each Rule { IPsec/Firewall Rules Rule 1 Step 1, select: Addresses1 Step 2, select: Services1 Rule 2 Step 1, select: Addresses2 Step 2, select: Services2 Step 3, select: Allow, Drop, or Protect with IPsec1 Step 3, select: Allow, Drop, or Protect with IPsec2 ... ... Limitations to rules, templates and services Limitations to rules, templates, and services are summarized in the following table. Table 5-2 Limitations to rules, templates and services Item Limit Maximum number of rules. 10 Maximum number of Address Templates. 8 Note the following: ● All IP Addresses Results in two (2) address template rules. One for all IPv4 addresses, and another for all IPv6 addresses. ● All non link local IPv6 Results in four (4) address template rules: ◦ :: to FE7F:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for both local and remote addresses ◦ :: to FE7F:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for local addresses FE81:: to FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for remote addresses ◦ FE81:: to FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for local addresses, ENWW HP Jetdirect IPsec/Firewall wizard 101

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202

Enter up to ten rules, each rule specifying the host addresses, services, and the action to take for those
addresses and services. Depending on whether IPsec is supported by the print server and device, the
following actions are available:
Allow traffic. If IPsec/Firewall is supported, allow IP traffic that is not protected by the IPsec/Firewall
policy.
Drop traffic. Do not process (discard) the specified IP traffic.
Require traffic to be protected with the IPsec/Firewall policy. You are prompted to configure an
IPsec template indicating the IPsec authentication/encryption settings to apply to the specified IP
traffic.
See the following illustration.
Figure 5-3
Use the IPsec Wizard to configure rules
...
{
...
HP Jetdirect
IPsec/Firewall Policy
IPsec/Firewall Rules
Use the IPsec/Firewall Wizard
to Configure Each Rule
Step 1, select:
Addresses1
Step 2, select:
Services1
Step 1, select:
Addresses2
Step 2, select:
Services2
Step 3, select:
Allow, Drop, or
Protect with
IPsec1
Step 3, select:
Allow, Drop, or
Protect with
IPsec2
Rule 1
Rule 2
Limitations to rules, templates and services
Limitations to rules, templates, and services are summarized in the following table.
Table 5-2
Limitations to rules, templates and services
Item
Limit
Maximum number of rules.
10
Maximum number of Address Templates.
Note the following:
All IP Addresses
Results in two (2) address template rules. One for all IPv4 addresses, and
another for all IPv6 addresses.
All non link local IPv6
Results in four (4) address template rules:
:: to FE7F:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for both local and remote addresses
:: to FE7F:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for local addresses
FE81:: to FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for remote addresses
FE81:: to FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF for local addresses,
8
ENWW
HP Jetdirect IPsec/Firewall wizard
101