Service
Service to which will be applied to the IP filtering rule. User can select one of Telnet, SSH, NFS,
HTTP, HTTPS or each serial port
Chain rule
Set the basic rule for the host to access the Pro Series as one of Accept, Drop or Reject.
The Pro Series provides a policy option. The policy decides how to treat a packet which isn' t
determined to be dropped or accepted by IP filtering list. For example, in case there is no IP filtering
list and all the services are set to be " Accept all" , the Pro Series won' t respond to any packet whose
destination port is not one of the services if the policy is " DROP"or " REJECT.
The Pro Series also provides users with simple configuration way to block a specific service(s) or
serial ports from all hosts. If the user should set any service option as " Drop all"or " Reject all" , then all
access to the service from the network will be blocked.
Figure 3-7 IP filtering Configuration
Figure 3-8 IP filtering policy
34