Product specifications
Efficient Networks
®
Router family
Technical Reference Guide
Chapter 8: WEB Management Interface
Efficient Networks
®
Page8-63
Firewall Rule Configuration page
The Firewall Rule Configuration page (shown below) provides a menu that allows the
user to:
• Create new firewall rules
• View or modify existing rules
• Delete existing rules
• Refresh the Allow and Deny Rule lists
Firewall Rule Parameters
The following parameters are used in the creation or modification of Stateful Firewall
Rules. For additional information, see “Stateful Firewall” on page 5-34.
Rules List - When firewall rules are created, they are specified as Allow or Deny
rules. When a packet is evaluated, the Deny rules are applied first, then the Allow
rules.
Target - This selection specifies the Protocol/Port or Application characteristics a
packet must have in order to match the firewall rule. When Protocol/Port is selected,
additional characteristics that an IP packet must have in order to match the firewall
rule can be specified.
Protocol - The protocol selections available are tcp, udp, icmp or a protocol
number can be specified.
If the protocol is ICMP, the packet source must match the specified ICMP
Type. If the packet is TCP of UDP, if only one source port is specified, the
packet must have the specified port, or if a range is defined, a source port
that is within the specified port range. If no source port is specified, the
firewall rule matches any source port in the range 0 - 65535.
If the protocol is ICMP, the packet destination must match the specified
ICMP Code. If the packet is TCP or UDP, if only one port is specified, the
packet must have the specified destination port, or if a range is defined, a
port that is within the specified destination port range. If no destination port is
specified, the firewall rule matches any destination port in the range 0 -
65535.