Multicast Forwarding - No Address Translation - D-Link NetDefend DFL-210 User Manual

Network security firewall
Hide thumbs Also See for NetDefend DFL-210:
Table of Contents

Advertisement

4.6.2. Multicast Forwarding using the
SAT Multiplex Rule
Using IGMP
Not using IGMP

4.6.2.1. Multicast Forwarding - No Address Translation

This scenario describes how to configure multicast forwarding together with IGMP. The multicast
sender is 192.168.10.1 and generates the multicast streams 239.192.10.0/24:1234. These multicast
streams should be forwarded from interface wan through the interfaces if1, if2 and if3. The streams
should only be forwarded if some host has requested the streams using the IGMP protocol. The
example below only covers the multicast forwarding part of the configuration. The IGMP
configuration can be found below in Section 4.6.3.1, "IGMP Rules Configuration - No Address
Translation".
Figure 4.8. Multicast Forwarding - No Address Translation
The traffic flow specified by the multiplex rule must have been requested by
hosts using IGMP before any multicast packets are forwarded through the
specified interfaces. This is the default behavior of NetDefendOS.
The traffic flow will be forwarded according to the specified interfaces
directly without any inference from IGMP.
Note
Since the Multiplex rule is a SAT rule, an Allow or NAT rule has to be specified
together with the Multiplex rule.
Note: SAT Multiplex rules must have a matching Allow rule
Remember to add an Allow rule that matches the SAT Multiplex rule.
The matching rule could also be a NAT rule for source address translation (see
below) but cannot be a FwdFast or SAT rule.
156
Chapter 4. Routing

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents