ZyXEL P-202H User Guide - Page 243

P-202H Plus v2 User's Guide, Filter Configuration, Menu 21.1.x.x TCP/IP Filter Rule

Page 243 highlights

P-202H Plus v2 User's Guide Table 80 Menu 21.1.x.x TCP/IP Filter Rule FIELD DESCRIPTION OPTIONS Port # Comp Press [SPACE BAR] and then [ENTER] to select the comparison to apply to the destination port in the packet against the value given in Destination: Port #. None Less Greater Equal Not Equal Source IP Address Enter the source IP Address of the packet you wish to filter. This 0.0.0.0 field is ignored if it is 0.0.0.0. IP Mask Enter the IP mask to apply to the Source: IP Addr. 0.0.0.0 Port # Enter the source port of the packets that you wish to filter. The 0-65535 range of this field is 0 to 65535. This field is ignored if it is 0. Port # Comp Press [SPACE BAR] and then [ENTER] to select the comparison to apply to the source port in the packet against the value given in Source: Port #. None Less Greater Equal Not Equal TCP Estab This field is applicable only when the IP Protocol field is 6, TCP. Yes Press [SPACE BAR] and then [ENTER] to select Yes, to have No the rule match packets that want to establish a TCP connection (SYN=1 and ACK=0); if No, it is ignored. More Press [SPACE BAR] and then [ENTER] to select Yes or No. If Yes Yes, a matching packet is passed to the next filter rule before an No action is taken; if No, the packet is disposed of according to the action fields. If More is Yes, then Action Matched and Action Not Matched will be N/A. Log Press [SPACE BAR] and then [ENTER] to select a logging None option from the following: Action None - No packets will be logged. Matched Action Matched - Only packets that match the rule parameters Action Not will be logged. Matched Action Not Matched - Only packets that do not match the rule Both parameters will be logged. Both - All packets will be logged. Action Matched Press [SPACE BAR] and then [ENTER] to select the action for a matching packet. Check Next Rule Forward Drop Action Not Matched Press [SPACE BAR] and then [ENTER] to select the action for a packet not matching the rule. Check Next Rule Forward Drop When you have Menu 21.1.x.x - TCP/IP Filter Rule configured, press [ENTER] at the message "Press ENTER to Confirm" to save your configuration, or press [ESC] to cancel. This data will now be displayed on Menu 21.1.x - Filter Rules Summary. The following figure illustrates the logic flow of an IP filter. Chapter 25 Filter Configuration 242

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375

P-202H Plus v2 User’s Guide
Chapter 25 Filter Configuration
242
The following figure illustrates the logic flow of an IP filter.
Port # Comp
Press [SPACE BAR] and then [ENTER] to select the comparison
to apply to the destination port in the packet against the value
given
in Destination: Port #
.
None
Less
Greater
Equal
Not Equal
Source
IP Address
Enter the source IP Address of the packet you wish to filter. This
field is ignored if it is 0.0.0.0.
0.0.0.0
IP Mask
Enter the IP mask to apply to the
Source: IP Addr
.
0.0.0.0
Port #
Enter the source port of the packets that you wish to filter. The
range of this field is 0 to 65535. This field is ignored if it is 0.
0-65535
Port # Comp
Press [SPACE BAR] and then [ENTER] to select the comparison
to apply to the source port in the packet against the value given
in
Source: Port #
.
None
Less
Greater
Equal
Not Equal
TCP Estab
This field is applicable only when the IP Protocol field is 6, TCP.
Press [SPACE BAR] and then [ENTER] to select
Yes
, to have
the rule match packets that want to establish a TCP connection
(SYN=1 and ACK=0); if
No
, it is ignored.
Yes
No
More
Press [SPACE BAR] and then [ENTER] to select
Yes
or
No
. If
Yes
, a matching packet is passed to the next filter rule before an
action is taken; if
No
, the packet is disposed of according to the
action fields.
If
More
is
Yes
, then
Action Matched
and
Action Not Matched
will be
N/A
.
Yes
No
Log
Press [SPACE BAR] and then [ENTER] to select a logging
option from the following:
None
– No packets will be logged.
Action Matched
- Only packets that match the rule parameters
will be logged.
Action Not Matched
- Only packets that do not match the rule
parameters will be logged.
Both
– All packets will be logged.
None
Action
Matched
Action Not
Matched
Both
Action Matched
Press [SPACE BAR] and then [ENTER] to select the action for a
matching packet.
Check Next
Rule
Forward
Drop
Action Not Matched
Press [SPACE BAR] and then [ENTER] to select the action for a
packet not matching the rule.
Check Next
Rule
Forward
Drop
When you have
Menu 21.1.x.x - TCP/IP Filter Rule
configured, press [ENTER] at the message “Press
ENTER to Confirm” to save your configuration, or press [ESC] to cancel. This data will now be
displayed on
Menu 21.1.x - Filter Rules Summary
.
Table 80
Menu 21.1.x.x TCP/IP Filter Rule
FIELD
DESCRIPTION
OPTIONS