
Configuring Security and Authentication
Chapter 8 75
Option
- Determines that the rule will be applied to the IP address/Mask
specified or its inverse; that is, the rule will be applied to all except those
specified.
Normal: applied to the hosts that are included
Invert: applied to the hosts that are excluded
IP address/Mask - Specifies the host range by entering base host IP address
followed by “/” and subnet mask. The host range can be one of the following
scenarios by changing the value:
• Only one host of a specific IP address
• Hosts on a specific subnet
• Any host
Protocol - - The protocol that is being accepted on or dropped from the port:
•TCP
•UDP
• ICMP
Port - - A TCP/IP port on the Digi CM unit that other hosts try to access. You
can specify either one port, using a single value, or a range of ports in this form
: port1:port2
where
port1 defines the lowest port and port2 the highest port.
Chain rule - Determines whether access from the hosts is allowed:
ACCEPT: Access allowed
DROP: Access not allowed
To add a new IP filtering rule, enter the values for the parameters and click the
Add button on the right side of the table.
To remove a rule, click the Remove button.
After you finish editing the table, save the settings to flash:
• To save your changes, use the Save to flash button.
• To save and apply your changes, use the Save & apply button.
Specified host range Input format
Any host 0.0.0.0/0.0.0.0
192.168.1.120 192.168.1.120/255.255.255.255
192.168.1.1 ~ 192.168.1.254 192.168.1.0/255.255.255.0
192.168.0.1 ~ 192.168.255.254 192.168.0.0/255.255.0.0
192.168.1.1 ~ 192.168.1.126 192.168.1.0/255.255.255.128
192.168.1.129 ~ 192.168.1.254 192.168.1.128/255.255.255.128
Kommentare zu diesen Handbüchern