Specifications
Examples of IP Filter Profiles
AVM Access Server – 5 AVM Access Server Concepts and Functional Principles 69
Incoming Filter Profile (Upper, Stateful)
“Incoming Internet profile (upper, stateful)”
Profile active Yes
Name Incoming Internet profile (upper, stateful)
Default action Drop
Rules
Status Service/Source/Destination Action Remarks
Active All packets for outgoing
connections
Accept This rule is part of the AVM
Access Server’s “stateful”
packet inspection. Do not
change this rule if you want
to use stateful inspection.
Active All packets for incoming
connections
Accept This rule is part of the AVM
Access Server’s “stateful”
packet inspection. Do not
change this rule if you want
to use stateful inspection.
Active All packets Drop All packets that have not
been accepted or dropped
above this point are treated
as intrusion attempts. These
may be tunneled packets
(i.e. IP-over-IP encapsulated
packets), or routing
protocols, such as OSPF or
EGP packets. These packets
would also be dropped by
the filter profile’s default
action, of course. This rule is
nonetheless included so
that you can activate its log
option if you want to trace an
attack on your firewall.