Netgear FVS338 FVS338 Reference Manual - Page 87

Example, Security, Bandwidth Profile, Direction, To add a Bandwidth Profile

Page 87 highlights

FVS338 ProSafe VPN Firewall 50 Reference Manual • Bandwidth limiting for outbound traffic is done on the available WAN interface in both the single port and Auto Rollover modes. Bandwidth limiting is handled on the user-specified interface in Load Balancing mode. • Bandwidth limiting for inbound traffic is handled on the LAN interface for all WAN modes. Bandwidth limiting does not apply to the DMZ interface. Example: When a new connection is established by a device, the device will locate the firewall rule corresponding to the following connections. • If the rule has a bandwidth profile specification, then the device will create a bandwidth class in the kernel. • If multiple connections correspond to the same firewall rule, they will share the same class. An exception occurs in the case of an individual type bandwidth profile if the classes are per source IP. The source IP is the IP of the first packet of the connection. • For the outbound rules the source IP will be LAN-side IP. • For inbound rules the source IP will be the WAN-side IP. The class is deleted when all the connections using the class expire. To add a Bandwidth Profile: 1. Select Security from the main menu and Bandwidth Profile from the submenu. The Bandwidth Profile screen will display. Figure 4-20 The Bandwidth Profile table lists the currently defined bandwidth profiles: • Name: Displays the user-defined name for this bandwidth profile. • Bandwidth Range: Displays the range for the bandwidth profile. • Type: Displays the type of bandwidth profile. • Direction: Displays the direction of the bandwidth profile. Firewall Protection and Content Filtering v1.0, March 2008 4-31

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198

FVS338 ProSafe VPN Firewall 50 Reference Manual
Firewall Protection and Content Filtering
4-31
v1.0, March 2008
Bandwidth limiting for outbound traffic is done on the available WAN interface in both the
single port and Auto Rollover modes. Bandwidth limiting is handled on the user-specified
interface in Load Balancing mode.
Bandwidth limiting for inbound traffic is handled on the LAN interface for all WAN modes.
Bandwidth limiting does not apply to the DMZ interface.
Example
: When a new connection is established by a device, the device will locate the firewall
rule corresponding to the following connections.
If the rule has a bandwidth profile specification, then the device will create a bandwidth class
in the kernel.
If multiple connections correspond to the same firewall rule, they will share the same class.
An exception occurs in the case of an individual type bandwidth profile if the classes are per
source IP. The source IP is the IP of the first packet of the connection.
For the outbound rules the source IP will be LAN-side IP.
For inbound rules the source IP will be the WAN-side IP.
The class is deleted when all the connections using the class expire.
To add a Bandwidth Profile:
1.
Select
Security
from the main menu and
Bandwidth Profile
from the submenu. The
Bandwidth Profile
screen will display.
The Bandwidth Profile table lists the currently defined bandwidth profiles:
Name
: Displays the user-defined name for this bandwidth profile.
Bandwidth Range
: Displays the range for the bandwidth profile.
Type
: Displays the type of bandwidth profile.
Direction
: Displays the direction of the bandwidth profile.
Figure 4-20