Figure 34 Firewall Window - Nokia 7368 ISAM CPE A-240Z-A Product Manual

Table of Contents

Advertisement

 
7368 ISAM CPE A-240Z-A Product Guide
Procedure 25
Firewall configuration
1
Figure 34
Issue: 01
 
All manuals and user guides at all-guides.com
Select Security > Firewall from the top-level menu in the Ethernet Gateway window, as
shown in Figure 34.
Firewall window
Firewall security applies only to services provided by the CPE. Internet access from the LAN
side is not affected by this firewall.
Three security levels are available: Low, Medium, and High.
At the Low level, pre-routing is supported: port forwarding, DMZ, host application, and host
drop. Also supported are application services: DDNS, DHCP, DNS, H248, IGMP, NTP client,
SSH, Telnet, TFTP, TR-069, and VoIP.
At the Medium level, pre-routing is supported: port forwarding, DMZ, host application, and
host drop. Also supported are application services: DDNS, DHCP, DNS, H248, IGMP, NTP
client, TFTP, TR-069, and VoIP. The following types of ICMP messages are permitted: echo
request and reply, destination unreachable, and TTL exceeded. Other types of ICMP
messages are blocked. DNS proxy is supported from LAN to WAN but not from WAN to LAN.
At the High level, pre-routing and application services are not supported. UDP Port 8000 can
be used to access the services, for example FTP can use 8021 and Telnet can use 8023.
Regular UDP cannot be used. RG access is permitted via the LAN side but not via the WAN
side.
Table
29
describes the fields in the firewall window.
3FE-46615-AAAA-TCZZA
Configure an A-240Z-A CPE
91

Advertisement

Table of Contents
loading

Table of Contents