Carrier Access Multi-Service Router (MSR) Card MSR/Adit 3K GUI User Manual

Page 185

Advertising
background image

Adit 3000 (Rel. 1.6) and MSR Card (Rel 2.0) GUI

4-31

Security

Advanced Filtering

Field

Definition

Matching - Use this section to define the rule’s conditions.

Source IP Address

The Source IP address of packets sent or received from the LAN
computer. This entry is mandatory when defining a rule.
Any - Apply this rule to any Source IP Address.
Single - Apply this rule only to this Source IP Address.
Range - Apply this rule to the following range of Source IP addresses
(enter IP address and subnet mask).

Destination IP Address

The Destination IP address of packets sent or received from a Network
Object. This entry is mandatory when defining a rule.
Any - Apply this rule to any Destination IP Address.
Single - Apply this rule only to this Destination IP Address.
Range - Apply this rule to the following range of Destination IP
addresses (enter IP address and subnet mask).

IP Fragments

This checkbox will allow (checked) or not allow (unchecked) IP
fragments.

Operation - Define what action the rule will take by selecting one of the following radio buttons:

Drop

Deny access to packets that match the source and destination IP
addresses defined above.

Reject

Deny access to packets that match the criteria defined, and send an
ICMP error or a TCP reset to the origination peer.

Accept

Allow access to packets that match the criteria defined. The data
transfer session will be handled using Stateful Packet Inspection (SPI),
meaning that other packets matching this rule will be automatically
allowed access.

Accept Packet

Allow access to packets that match the criteria defined. The data
transfer session will not be handled using SPI, meaning that other
packets matching this rule will not be automatically allowed access.
This can be useful, for example, when creating rules that allow
broadcasting.

Logging

Log packets matched by this rule.
This checkbox enables/disable logging of these events.

Scheduler

Scheduled Availability - To set this to a setting other that Always,
select New and specify the schedule on the Schedule Rule Edit window.
For information on configuring the schedule, see Scheduler Rules on
page 2-52
.

Service Name

Select the services to be applied to this rule.
Note: The Service table is used by multiple windows; the standard
services and the User-Defined services created on any of these windows
appear here.
For information on creating a New User-Defined Service, see Creating
a User-Defined Rule on page 4-10
.

Advertising