Quick Reference Guide

ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
5-30 Firewall Security and Content Filtering
v1.0, January 2010
Host2: Matching IP address but inconsistent MAC address in the IP/MAC Bindings table.
Host3: Matching MAC address but inconsistent IP address in the IP/MAC Bindings table.
The VPN firewall will block the traffic coming from Host2 and Host3, but allow the traffic coming
from Host1 to any external network. The total count of dropped packets will be displayed.
To enable IP/MAC Binding and add IP and MAC address for binding:
1. Select Security > Address Filter from the main/submenu. The Source MAC Filter screen is
displayed as the default screen.
2. Click the IP/MAC Binding tab. The IP/MAC Binding screen is displayed.
3. Select the Yes radio box and click Apply. Make sure that you have enabled the e-maling of
logs (see “Activating Notification of Events and Alerts” on page 10-1).
4. Add an IP/MAC Bind rule by entering:
a. Name. Specify an easily identifiable name for this rule.
b. MAC Address. Specify the MAC Address for this rule.
c. IP Addresses. Specify the IP Address for this rule.
d. Log Dropped Packets. Select the logging option for this rule from the pull-down menu.
Figure 5-17