Page 1
BCM50 Rls 6.0 Router - IP Firewall Task Based Guide...
Page 2
Avaya does not guarantee that these links will work all the time and has no control over the availability of the linked pages.
Page 3
Contact Avaya Support Avaya provides a telephone number for you to use to report problems or to ask questions about your product. The support telephone number is 1-800-242-2121 in the United States. For additional support telephone numbers, see the Avaya Web site: http://www.avaya.com/support...
IP address that is within the accepted range of IP addresses of your internal network. BCM50 Integrated Router stateful packet filtering validates that addresses coming from outside the network are valid outside addresses. Stateful packet filters also protect your network from a denial-of-service NN40011-045 Issue 1.2 BCM50 Rls 6.0...
WAN to WAN: By default all packets are blocked for this option. This prevents computers on the WAN from using the BCM50 Integrated Router as a gateway to communicate with other computers on the WAN and/or managing the BCM50 Integrated Router. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
For example, if traffic is being allowed from the Internet to the LAN, it is better to allow only certain machines on the Internet to access the LAN. Which order should the rules be applied? NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Available Services list? Add your custom service/port: refer to the Editing Custom Ports section of this guide. Ensure the Firewall is enabled: refer to the Enabling the Firewall section of this guide. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
From Element Manager 1. To access the Business Element Manager application from the Start Menu, navigate Start, Programs, Avaya, Business Communications Manager, Business Element Manager. 2. Alternatively, double-click on the Business Element Manager desktop icon. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 10
5. Enter the User Name of the BCM in the User Name field, by default this is nnadmin. Then enter the Password in the Password field, by default the password is PlsChgMe!. Click the Connect button. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 11
IP Firewall 6. A warning screen will appear, read the warning and click OK. 7. You will be presented with the Element Manager interface. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 12
Username (default = nnadmin) and Password (default = PlsChgMe!) and click Login. Note: if the above logon details do not work, try Username = admin, and Password = setup. 10. Change the password and click Apply, or click Ignore to continue. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 13
IP Firewall 11. To replace factory certificate click Apply or Ignore to continue. 12. The Main Menu screen will display. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Username (default = nnadmin) Password (default = PlsChgMe!) and click Login. Note: if the above logon details do not work, try Username = admin Password = setup. 3. Change the password and click Apply, or click Ignore to continue. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 15
IP Firewall 4. To replace factory certificate click Apply or Ignore to continue. 5. The Main Menu screen will display. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Move button to place the rule correctly. 5. You can also Edit (for configuration instructions, refer to the Inserting a Firewall Rule section below), or Delete existing rules. 6. Click Apply to save your settings. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
IP Firewall Inserting a Firewall Rule Use the following procedure to configure individual Firewall rules. 1. In the Firewall – Summary screen, click on Insert. The Firewall – Edit Rule screen will display. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 18
Select the Action for Matched Packets (forward or block). 3. Ensure the Active checkbox is ticked if you want this rule to be implemented. 4. Click Apply to save your settings. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 19
(Match), don't match the rule (Not Match), match either rule (Both) or no log is created (None). Alert Select the Alert check box to determine that this rule generates an alert when the rule is matched. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
1. Whilst in the Edit Rule screen, click on the Add button in the Custom Ports section. 2. Enter a Name, Service Type, and either a Single port or Range of ports that defines the service. 3. Click Apply to save your settings. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Enabling the Firewall After configuring the firewall rules, you should ensure the firewall is enabled. 1. Whilst in the Firewall Summary screen, ensure the Enable Firewall tick box is selected. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
3. In the Attack Alert tab, enable the Alerts function by ticking the Generate alert when attack detected check box. 4. Configure the rest of the detail settings and click Apply to save your settings. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Page 23
(min) text blocked. If you check box. Blocking Period any new sessions will be blocked for the length of time you specify in the next field (min) NN40011-045 Issue 1.2 BCM50 Rls 6.0...
3. Enter the name or IP Address of your mail server in the Mail Server field, and ensure that you specify the e-mail address of the person to send logs to in the Send Alerts to field. NN40011-045 Issue 1.2 BCM50 Rls 6.0...
5000 QoS monitor probe packets 5060 SIP traffic 7000 Unistim IP set signalling traffic 20000-20255 Voice Path for IP telephony which is used when 28000 range is unavailable 28000-28255 Voice Path for IP trunks NN40011-045 Issue 1.2 BCM50 Rls 6.0...
Need help?
Do you have a question about the BCM50 Rls 6.0 and is the answer not in the manual?
Questions and answers