Radware Alteon Application Manual page 375

Application switch operating system
Hide thumbs Also See for Alteon:
Table of Contents

Advertisement

>> Filter 2# vlan 20
>> Filter 2# ena
All clients from other VLANs are ignored.
2. Configure Filter 3 to allow local clients to telnet anywhere outside the local intranet and then
assign VLAN 30 to the filter.
The filter must recognize and allow TCP traffic to reach the local client destination IP addresses if
originating from a Telnet source port.
>> # /cfg/slb/filt 3
>> Filter 3# sip any
>> Filter 3# dip 205.177.15.0
>> Filter 3# dmask 255.255.255.0
>> Filter 3# proto tcp
>> Filter 3# sport telnet
>> Filter 3# dport any
>> Filter 3# action allow
>> Filter 3# name allow clients to telnet
>> Filter 3# vlan 30
>> Filter 3# ena
3. Configure Filter 2048 to deny traffic and then assign VLAN 70 to the filter. As a result, ingress
traffic from VLAN 70 is denied entry to Alteon.
>> # /cfg/slb/filt 2048
>> Filter 2048# sip any
>> Filter 2048# dip 205.177.15.0
>> Filter 2048# dmask 255.255.255.0
>> Filter 2048# proto tcp
>> Filter 2048# sport http
>> Filter 2048# dport any
>> Filter 2048# action deny
>> Filter 2048# vlan 70
>> Filter 2048# ena
4. Assign VLAN-based filters to an SLB port.
Before the filters can be used, they must be assigned to an SLB port.
>> # /cfg/slb/port 10
>> SLB Port 10# add 2
Document ID: RDWR-ALOS-V2900_AG1302
Alteon Application Switch Operating System Application Guide
(Assign VLAN 20 to Filter 2)
(Enable the filter)
(Select the menu for Filter 3)
(From any source IP address)
(To base local network destination
address)
(For entire subnet range)
(For TCP protocol traffic)
(From a Telnet port)
(To any destination port)
(Allow matching traffic to pass)
(Provide a descriptive name for the
filter)
(Assign VLAN 30 to Filter 3)
(Enable the filter)
(Select the menu for Filter 2048)
(From any source IP address)
(To base local network destination
address)
(For entire subnet range)
(For TCP protocol traffic)
(From a Telnet port)
(To any destination port)
(Allow matching traffic to pass)
(Assign VLAN 70 to Filter 2048)
(Enable the filter)
(Select the menu for the port in use)
(Add Filter 2 to SLB Port 10)
Filtering and Traffic Manipulation
375

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents