Ubiquiti AirRouter HP [37/61] Firewall settings

Ubiquiti AirRouter HP [37/61] Firewall settings
33
Chapter 6: Network TabAirRouter
HP User Guide
Ubiquiti Networks, Inc.
SOHO Router > Multicast Routing
Settings
With a multicast design, applications can send one copy
of each packet and address it to a group of computers
that want to receive it. This technique addresses packets
to a group of receivers rather than to a single receiver.
It depends on the network to forward the packets
to the hosts which need to receive them. Common
routers isolate all the broadcast (thus multicast) traffic
between the internal and external networks, however the
AirRouter HP provides the multicast traffic pass-through
functionality.
Enable Multicast Routing Option enables multicast
packet pass-through between internal and external
networks while the AirRouter HP is operating in Router
mode. Multicast intercommunication is based on Internet
Group Management Protocol (IGMP).
Multicast Upstream Specify the source of Multicast
traffic, i.e. defines where multicast traffic comes from.
SOHO Router > Firewall Settings
Firewall functionality on any router interface can be
enabled using the Enable Firewall option. Router Firewall
rules can be configured, enabled or disabled in the
Firewall configuration window which is opened by clicking
Configure.
Firewall entries can be specified by using the following
criteria:
• Interface The interface (WLAN, LAN or PPP) where
filtering of the incoming/passing-through packets is
processed.
• IP Type Sets which particular L3 protocol type (IP, ICMP,
TCP, UDP, P2P) should be filtered.
• Source IP/Mask The source IP of the packet (specified
within the packet header), usually it is the IP of the host
system which sends the packets.
•
Src Port The source port of the TCP/UDP packet
(specified within the packet header), usually it is the port
of the host system application which sends the packets.
• Destination IP/mask The destination IP of the packet
(specified within the packet header), usually it is the IP
of the system which the packet is addressed to.
•
Dst Port The destination port of the TCP/UDP packet
(specified within the packet header), usually it is the
port of the host system application which the packet is
addressed to.
•
Comment Field used to enter a brief description of the
firewall entry.
•
On Enables or disables the effect of the particular
firewall entry. All the added firewall entries are saved in
the system configuration file, however only the enabled
firewall entries will be active during AirRouter HP
operation.
•
Not Can be used for inverting the Source IP/mask,
Source Port, Destination IP/mask and Destination Port
filtering criteria (i.e. if not is enabled for the specified
Destination Port value 443, the filtering criteria will be
applied to all the packets sent to any Destination Port
except the 443 which is commonly used by HTTPS).
Firewall entries can be saved by clicking Save or discarded
by clicking Cancel in the Firewall configuration window.
All active firewall entries are stored in the FIREWALL chain
of the iptables filter table, while the device is operating
in Router mode. Please refer to the iptables tutorial for
detailed description of the firewall functionality in Router
mode.
Click Change to save the changes made on the Network
tab.

Содержание

Похожие устройства

Скачать
Случайные обсуждения