Draytek VigorPro 5300 User Manual page 95

Unified security firewall
Hide thumbs Also See for VigorPro 5300:
Table of Contents

Advertisement

Fragments
Filter
Branch to other Filter
Set
IM/P2P Filter
URL Content Filter
VigorPro5300 Series User's Guide
choose Group and Objects as the Service Type.
Protocol - Specify the protocol(s) which this filter rule will apply to.
Source/Destination Port -
(=) – when the first and last value are the same, it indicates one
port; when the first and last values are different, it indicates a range
for the port and available for this service type.
(!=) – when the first and last value are the same,
the ports except the port defined here; when the first and
values are different, it indicates that all the ports except the range
defined here are available for this service type.
(>) – the port number greater than this value is available.
(<) – the port number less than this value is available for this
profile.
Service Group/Object - Use the drop down list to choose the one
that you want.
Specify the action for fragmented packets. And it is used for Data
Filter only.
Don't care -No action will be taken towards fragmented packets.
Unfragmented -Apply the rule to unfragmented packets.
Fragmented - Apply the rule to fragmented packets.
Too Short - Apply the rule only to packets that are too short to
contain a complete header.
Specifies the action to be taken when packets match the rule.
Block Immediately - Packets matching the rule will be dropped
immediately.
Pass Immediately - Packets matching the rule will be passed
immediately.
Block If No Further Match - A packet matching the rule, and that
does not match further rules, will be dropped.
Pass If No Further Match - A packet matching the rule, and that
does not match further rules, will be passed through.
If the packet matches the filter rule, the next filter rule will branch
to the specified filter set. Select next filter rule to branch from the
drop-down menu. Be aware that the router will apply the
specified filter rule for ever and will not return to previous filter
rule any more.
Select a CSM profile for global IM/P2P application blocking. All
the hosts in LAN must follow the standard configured in the CSM
profile selected here. For detailed information, refer to the section
of CSM profile setup. For troubleshooting needs, you can specify to
record information for IM/P2P by checking the Log box. It will be
sent to Syslog server. Please refer to section 3.14.4 Syslog/Mail
Alert for more detailed information.
Select one of the URL Content Filter profile settings (created in
CSM>> URL Content Filter Profile) for applying with this router.
Please set at least one profile for choosing in CSM>> URL
Content Filter Profile web page first. For troubleshooting needs,
you can specify to record information for URL Content Filter by
it indicates all
last
87

Advertisement

Table of Contents
loading

Table of Contents