Content Filtering - Cradlepoint MBR1400 User Manual

Arc series router
Hide thumbs Also See for MBR1400:
Table of Contents

Advertisement

User Manual
/
IBR600/IBR650
NAT
Zone NAT is similar to Port Forwarding and provides that functionality by mapping ports available on interfaces
associated with the Zone to ports available on local clients. Zone NAT also has the ability to map many types
interfaces selectable via a Zone. For example, GRE interfaces can be used to port forward traffic from the GRE
endpoints to local client thereby limiting exposure to the
local LAN while still gaining the benefits of GRE.
Click Add to create a Zone NAT.
Source Zone Name: The Zone created in Zone Firewall.
Select the Zone to NAT.
Original Destination IP: Specify which inbound traffic to
this router will have the destination IP translated to an
internal network.
Inbound Port(s): Specify the IP port(s) on the inbound
traffic to forward to a local computer.
Local Computer: Specify the local computer to receive
forwarded traffic.
Local Port(s): Specify the IP port (first if a range) on the
local computer to receive forwarded traffic.
Protocol: Select the IP protocol traffic to forward.
Dynamic 1:1 NAT
Dynamic NAT allows translating the destination ip of
incoming network traffic to a local network. All ports and
protocols will be forwarded. Netmasks should generally
match. If the local network range is larger than the incoming
destination range then network traffic will begin using
port overloading. One-to-One NAT can be accomplished by
specifying a host address or a /32 cidr address.
Click Add to create a Dynamic 1:1 NAT.
Upstream Proxy Settings
Enabled: Select whether the use of an Upstream Proxy server is enabled.

CONTENT FILTERING

WEBFILTER SETTINGS
General Settings
Enbable Webfilter: Selecting "Enable Webfilter" will enable the webfiltering
service. This is used to enable or disable all router-based webfiltering and
forwarding.
Filter HTTPS: Selecting "Filter HTTPS" enables redirection of all port 443 traffic
into the proxy. The proxy will then extract the host name from the SNI (Server
Name Indication). If SNI is unavailable then the original destination IP address is
used for filtering. No decoding of the SSL/TLS session is done.
©2015 Cradlepoint. All Rights Reserved.
|
+1.855.813.3385
|
cradlepoint.com
54

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents