Configuring Ip Firewall Rules - Motorola AP-6511 Reference Manual

Access point
Hide thumbs Also See for AP-6511:
Table of Contents

Advertisement

Motorola Solutions AP-6511 Access Point System Reference Guide
Stateless TCP Flow
Stateless FIN/RESET
Flow
ICMP
UDP
Any Other Flow
11. Refer to the
Check TCP states
where a SYN packet
tears down the flow
Check unnecessary
resends of TCP
packets
Check Sequence
Number in ICMP
Unreachable error
packets
Check
Acknowledgment
Number in RST
packets
Check Sequence
Number in RST
packets
12. Select
configuration.

8.1.2 Configuring IP Firewall Rules

Wireless Firewall
Devices use IP based Firewalls like Access Control Lists (ACLs) to filter/mark packets based on the IP from
which they arrive, as opposed to filtering packets on Layer 2 ports.
8-6
Define a flow timeout value in either Seconds (1 - 32,400), Minutes
(1 - 540) or Hours (1 - 9). The default setting is 90 seconds.
Define a flow timeout value in either Seconds (1 - 32,400), Minutes
(1 - 540) or Hours (1 - 9). The default setting is 10 seconds.
Define a flow timeout value in either Seconds (1 - 32,400), Minutes
(1 - 540) or Hours (1 - 9). The default setting is 30 seconds.
Define a flow timeout value in either Seconds (1 - 32,400), Minutes
(1 - 540) or Hours (1 - 9). The default setting is 90 seconds.
Define a flow timeout value in either Seconds (1 - 32,400), Minutes
(1 - 540) or Hours (1 - 9). The default setting is 5 seconds.
TCP Protocol Checks
Select the radio button to allow a SYN packet to delete an old flow in
TCP_FIN_FIN_STATE and TCP_CLOSED_STATE and create a new flow. The
default setting is enabled.
Select the radio button to enable the checking of unnecessary resends of
TCP packets. The default setting is enabled.
Select the radio button to enable sequence number checks in ICMP
unreachable error packets when an established TCP flow is aborted.The
default setting is enabled.
Select the radio button to enable the checking of the acknowledgment
number in RST packets which aborts a TCP flow in the SYN state. The
default setting is enabled.
Select the radio button to check the sequence number in RST packets
which abort an established TCP flow. The default setting is enabled.
OK
to update the Firewall Policy Advanced Settings. Select
field to set the following parameters:
Reset
to revert to the last saved

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents