Lantronix X300 Series X300 Series User Guide Rev B - Page 160

Firewall, General Settings, Firewall Global Settings, Network > Firewall

Page 160 highlights

11: Network Status message Short cable (less than 10 meters) detected. Cable diagnostic test failed Description Short cable detected. The cable has failed the diagnostic test. Possible failure reasons include: interface is busy, link partner is not configured for autonegotiation, or link partner is busy establishing the link. Firewall Network > Firewall The firewall policy helps secure the network. The X300 series gateways follow a zone based firewall concept. Every interface of the gateway, whether physical or virtual, needs to be assigned to a firewall zone, and all traffic routed through that interface is bound by the assigned policy. At a minimum, there are two firewall zones, the LAN zone and WAN zone, with one or more interfaces assigned to each zone. By default, there is a minimal firewall configuration predefined in the gateway. The minimal configuration consists of global firewall settings, and two zones, the LAN zone and WAN zone which serve as a source or destination for port forwarding, rules, and redirects. This configuration may be sufficient for your needs with little modification. Otherwise, you can use the web interface to modify the firewall configuration. This section assumes that the reader has knowledge of implementing firewall policies or will consult their network administrator to set up the firewall policies. Note: Create a backup of the firewall configuration before making any changes. General Settings The General settings page consists of the global settings and zones. The global firewall settings are default firewall settings that do not belong to any zone. Firewall Global Settings To configure firewall global settings: 1. Go to Network > Firewall. 2. In the top section of the General Settings page, if desired, modify global firewall settings. See Table 11-24. 3. Click Save & Apply to save the changes and reload the firewall. Table 11-24 Firewall Global Settings Parameters Description General Settings Enable SYN-flood protection Check to enable SYN-flood protection. SYN-flood protection will enable spamming detection and block whenever there is a spam attack. X300 Series IoT Cellular Gateway User Guide 160

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216

11: Network
X300 Series IoT Cellular Gateway User Guide
160
Firewall
Network > Firewall
The firewall policy helps secure the network. The X300 series gateways follow a zone based
firewall concept. Every interface of the gateway, whether physical or virtual, needs to be assigned
to a firewall zone, and all traffic routed through that interface is bound by the assigned policy. At a
minimum, there are two firewall zones, the LAN zone and WAN zone, with one or more interfaces
assigned to each zone.
By default, there is a minimal firewall configuration predefined in the gateway. The minimal
configuration consists of global firewall settings, and two zones, the LAN zone and WAN zone
which serve as a source or destination for port forwarding, rules, and redirects. This configuration
may be sufficient for your needs with little modification. Otherwise, you can use the web interface
to modify the firewall configuration.
This section assumes that the reader has knowledge of implementing firewall policies or will
consult their network administrator to set up the firewall policies.
Note:
Create a backup of the firewall configuration before making any changes.
General Settings
The General settings page consists of the global settings and zones. The global firewall settings
are default firewall settings that do not belong to any zone.
Firewall Global Settings
To configure firewall global settings:
1.
Go to Network > Firewall.
2.
In the top section of the General Settings page, if desired, modify global firewall settings. See
Table 11-24
.
3.
Click
Save & Apply
to save the changes and reload the firewall.
Table 11-24
Firewall Global Settings
<interface name:> Short cable
(less than 10 meters) detected.
Short cable detected.
<interface name:> Cable
diagnostic test failed
The cable has failed the diagnostic test. Possible failure reasons
include: interface is busy, link partner is not configured for auto-
negotiation, or link partner is busy establishing the link.
Parameters
Description
General Settings
Enable SYN-flood protection
Check to enable SYN-flood protection. SYN-flood protection will enable
spamming detection and block whenever there is a spam attack.
Status message
Description