Configuring Inbound Acl Rules - Asus RX3041H User Manual

High-speed router
Table of Contents

Advertisement

RX3041H User's Manual
Field
Service
Protocol
This option allows you to select protocol type from a drop-down list. Available settings are All, TCP,
UDP, ICMP, AH and ESP. Note that if you select "service" for the destination port, this option will not
be available.
NAT
This option allows you to select the type of NAT for the traffic.
None
IP Address
NAT Pool
Interface
(Outbound ACL only)
Time Ranges
Select a pre-configured time range during which the rule is active. Select "Always" to make the rule
active at all times.
Application Filtering
This option allows you to select pre-configured FTP, HTTP, RPC and/or SMTP application filters
from the drop-down list.
Log
Click on the "Enable" or "Disable" radio button to enable or disable logging for this ACL rule.
9.4

Configuring Inbound ACL Rules

Inbound ACL rules are used to control (allow or deny) access to the local network.
Description
This option allows you to select any of the pre-configured services
(selectable from the drop-down list) instead of the destination port. The
following are examples of services:
BATTLE-NET, PC-ANYWHERE, FINGER, DIABLO-II, L2TP, H323GK,
CUSEEME, MSN-ZONE, ILS, ICQ_2002, ICQ_2000, MSN, AOL, RPC,
RTSP7070, RTSP554, QUAKE, N2P, PPTP, MSG2, MSG1, IRC, IKE,
H323, IMAP4, HTTPS, DNS, SNMP, NNTP, POP3, SMTP, HTTP, FTP,
TELNET.
Note: service is a combination of protocol and port number. They appear
here after you add them in the "Firewall Service" configuration page.
Select this option if you don't intend to use NAT in this ACL rule.
For inbound ACL rules: select this option to specify the IP address of the
computer (usually a server in your LAN) that you want the incoming traffic to
be directed. Note this option is called reverse NAPT or virtual server.
For outbound ACL rules: Select this option to specify the IP address that
you want the outbound traffic to use. Note this option is called NAPT or
overload.
Select this option to associate a pre-configured NAT pool to the rule. For
inbound ACL rules, only reverse static NAT and reverse NAPT pool can
be used. For outbound ACL rules, only static, dynamic and overload NAT
pool can be used.
This option is available for outbound ACL rules only. Select this option
to use the WAN interface IP address for the outbound traffic. Note that WAN
IP must be configured prior to selecting this option. Three options are
available: eth0, pppoe0 and pppoe1. Select eth0 if your WAN interface type
is static or dynamic; pppoe0 if WAN interface is PPPoE0, and pppoe1 if
WAN interface is PPPoE1.
Chapter 9. Configuring Firewall/NAT Settings
57

Advertisement

Table of Contents
loading

Table of Contents