D-Link DFL-1000 [51/168] Ip pools

D-Link DFL-1000 [51/168] Ip pools
DFL-1000 User Manual
51
Use the following information to configure the policy.
Source
Select the source address from which users can access the server. For example, if you
want to add a policy that allows all users on the Internet to access a server set Source to
External_All.
Destination
Select the virtual IP.
Schedule
Select a schedule as required.
Service
Select the service that matches the Map to Service that you selected for the port-
forwarding virtual IP.
Action
Set action to ACCEPT to accept connections to the internal server. You can also select
DENY to deny access.
NAT
Select NAT if the firewall is protecting the private addresses on the destination network
from the source network.
Authentication
Optionally select Authentication and select a user group to require users to authenticate
with the firewall before accessing the server using port forwarding.
Log Traffic
Web filter
Select these options to log port-forwarded traffic and apply web filter protection to this
traffic.
Select OK to save the policy.
IP pools
An IP pool (also called a dynamic IP pool) is a range of IP addresses added to a firewall interface. The
addresses in the IP pool must be on the same subnet as the IP address of the interface. The addresses
in the IP pool range cannot conflict with other addresses on the same network as the interface for which
you are adding the IP pool. You can add multiple IP pools to any interface.
Add IP pools if you want to add NAT mode policies that translate source addresses to addresses
randomly selected from a predefined range of IP addresses. For example, if the IP address of the internal
interface is 192.168.1.99, a valid IP pool could have a start IP of 192.168.1.10 and an end IP of
192.168.1.20. This IP pool would give the firewall 11 addresses to select from when translating the
source address.
If you add IP pools for an interface, you can select Dynamic IP Pool when you configure a policy with its
destination set to this interface. For example, if you add IP pools for the internal interface, you can select
IP pools for Ext
->
Int and DMZ
->
Int policies.
To add an IP pool:
Go to Firewall > IP Pool.
Select the interface to which to add the IP pool.
The list of IP pools added to that interface is displayed.
Select New to add a new IP pool to the selected interface.
Enter the Start IP and End IP addresses for the range of addresses in the IP pool.
The Start IP and End IP must define the start and end of an address range. The Start IP must be
lower than the End IP. The Start IP and End IP must be on the same subnet as the IP address of the
interface for which you are adding the IP pool.
If you have configured the external interface to use PPPoE or DHCP, you can only set the Start IP
and End IP to the current IP address of the external interface.
Select OK.

Содержание

Скачать