NETGEAR ProSafe FVS336Gv2 Reference Manual page 45

Prosafe dual wan gigabit firewall with ssl & ipsec vpn
Hide thumbs Also See for ProSafe FVS336Gv2:
Table of Contents

Advertisement

ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
Table 4-3. Outbound Rules (Continued)
Item
WAN Users
QoS Priority
Log
Bandwidth Profile
NAT IP
NAT Single IP Is On
(interface)
Note:
See
"Configuring Source MAC Filtering"
way to block outbound traffic from selected PCs that would
otherwise be allowed by the VPN firewall.
Inbound Rules (Port Forwarding)
When the VPN firewall uses Network Address Translation (NAT), your network presents only
one IP address to the Internet and outside users cannot directly address any of your local
computers. However, by defining an inbound rule you can make a local server (for example,
a Web server or game server) visible and available to the Internet. The rule tells the VPN
firewall to direct inbound traffic for a particular service to one local server based on the
destination port number. This is also known as port forwarding.
Whether or not DHCP is enabled, how the PCs will access the server's LAN address impacts
the inbound rules. For example:
If your external IP address is assigned dynamically by your ISP (DHCP enabled), the IP
address may change periodically as the DHCP lease expires. Consider using dynamic
Description
Specifies which Internet locations are covered by the rule, based on their IP address.
Select the desired option:
Any – All Internet IP address are covered by this rule.
Single address – Enter the required address in the start field.
Address range – If this option is selected, you must enter the start and end fields.
Specifies the priority of a service which, in turn, determines the quality of that service
for the traffic passing through the VPN firewall. By default, the priority shown is that of
the selected service. The user can change it accordingly. If the user does not make a
selection (leaves it as Normal-Service), then the native priority of the service will be
applied to the policy. See
"Setting Quality of Service (QoS) Priorities"
This determines whether packets covered by this rule are logged. Select the desired
action:
Always – always log traffic considered by this rule, whether it matches or not.
This is useful when debugging your rules.
Never – never log traffic considered by this rule, whether it matches or not.
Specifies the name of a bandwidth limiting profile. Using a bandwidth profile,
bandwidth consumed by different connections can be limited. If multiple connections
correspond to the same firewall rule, they will share the same bandwidth limiting. See
"Creating Bandwidth Profiles"
Specifies whether the source IP address of the outgoing packets should be the WAN
interface address or a specified address, which should belong to the WAN subnet.
Specifies to which WAN interface the NAT IP address belongs. All outgoing packets
will be routed through the specified WAN interface only.
Chapter 4: Firewall Protection and Content Filtering
on page 59.
on page 64 for yet another
on page 58.
| 45

Advertisement

Table of Contents
loading

Table of Contents