Example 4, Example 5 – Farallon Communications R9100 User Manual

Page 173

Advertising
background image

Security 13-35

Since the Source IP Network Address in the Netopia R9100 is 01100000, and the source IP address after the
logical AND is 1011000, this rule does not match and this packet will be passed.

Example 4

Incoming packet has the source address of 200.1.1.104.

Since the Source IP Network Address in the Netopia R9100 is 01100000, and the source IP address after the
logical AND is 01100000, this rule does match and this packet will not be passed.

Example 5

Incoming packet has the source address of 200.1.1.96.

Filter Rule:

200.1.1.96

(Source IP Network Address)

255.255.255.240

(Source IP Mask)

For ward = No

(What happens on match)

IP Address

Binar y Representation

200.1.1.104

01101000

(Source address in incoming IP packet)

AND

255.255.255.240

11110000

(Per form the logical AND)

01100000

(Logical AND result)

Filter Rule:

200.1.1.96

(Source IP Network Address)

255.255.255.255

(Source IP Mask)

For ward = No

(What happens on match)

IP Address

Binar y Representation

200.1.1.96

01100000

(Source address in incoming IP packet)

AND

255.255.255.255

11111111

(Per form the logical AND)

01100000

(Logical AND result)

Advertising