User`s guide

Table Of Contents
Defining Filters and Firewalls
Secure Access Firewalls
Pipeline User’s Guide Preliminary January 30, 1998 6-35
Name specifies the name of the firewall and is originally created using the
Secure Access Manager (SAM) graphical user interface.
Each firewall contains a version number to ensure that any firewall that is
uploaded to the router will be compatible with the firewall software on the
router. Secure Access Manager (SAM) checks the version number before
uploading a firewall. In the event that a router with a stored firewall profile
receives a code update that make the existing firewall incompatible, a default
firewall is enabled, permitting only Telnet access to the Pipeline. You cannot
edit this field.
Length specifies the length of the firewall uploaded to the Pipeline from
Secure Access Manager (SAM), and cannot be edited.
Assigning firewalls to a Connection profile
You can assign firewalls to a Connection profile to filter incoming or outgoing
traffic on a WAN connection. Filters assigned to a Connection profile are
activated whenever the WAN session comes online.
To assign a firewall to a Connection profile:
1
Create a firewall filter using SAM.
2
Download it to the Pipeline.
3
Open Ethernet > Connections > any profile > Session Options.
4
Enter the number of the firewall filter you want to use in the Data filter field.
This number is derived from the number in the Firewall menu by adding 100
to the last 2 digits of the firewall index. For example, if the firewall is
number 20-503, enter number 103 in the Data Filter field.
5
Exit and save the Connection profile.
Assigning firewalls to the Mod Config profile
Firewalls assigned to the Ethernet > Mod Config profile are used to filter
incoming or outgoing traffic on the Ethernet interface. Filters assigned to the
Mod Config profile are activated as soon as you save the changes to the Mod
Config profile.
To assign a firewall to the Mod Config profile, do the following: