Ip filtering – SENA PS210W User Manual

Page 34

Advertising
background image

34

- Any host cannot access a specific service of the Pro Series

- Only one host of a specific IP address can access a specific service of the Pro Series

- Hosts on a specific subnet can access a specific service of the Pro Series

- Any host can access a specific service of the Pro Series

The IP filtering feature is intended to control access to Telnet console, SSH console, NFS, Web server

or each port, which may be enabled or disabled. The factory default of the filtering feature is “All

services and ports are accessible from any host”.

The meanings of each parameter in IP filtering configuration are as follows,

 Interface

Apply IP filtering rule to the incoming packet of Pro Series. This is fixed parameter as

eth0(Read-Only).

 Option and IP address/mask

Input field to describe a specific range of host on the network. The user may allow a host or a

group of hosts to access the Pro Series. The user must then enter the IP address and subnet of

access. Any user on a remote host must stay in the specified subnet boundary to access the

Pro Series. To allow only a specific host to access the Pro Series, enter the IP address of the

specific host and just give 255.255.255.255 for the subnet with Normal option. To allow any

hosts to have access to the Pro Series, give 0.0.0.0 for both of the IP address and subnet with

Normal option also. Refer to Table 3-2 for more details.

 Service

Service to which will be applied to the IP filtering rule. User can select one of Telnet, SSH, NFS,

HTTP, HTTPS or each serial port

 Chain rule

Set the basic rule for the host to access the Pro Series as one of Accept, Drop or Reject.

Advertising