PointRed Telecom Ltd. MCRD-2458 Manuel D’Utilisation

Page de 143



M i c r o R e d   &   M i c r o V i e w   N M S   U s e r   M a n u a l   v 1 . 0
Page 108
Type Action 
Comments 
Connections To Internet 
Accepted 
Traffic from HotSpot 
Users
SSH Connection 
Accepted 
New SSH connection 
SNMP Accepted 
SNMP 
request 
MNMS connection 
Accepted 
New MNMS connection 
ICMP traffic 
Limited to 
5/sec
All ICMP types 
Protocols AH, ESP (IPsec) 
Accepted 
IPsec traffic 
Everything else 
Dropped 
 
Medium Protection 
Policy
 of the Input firewall chain will be set to Drop. The following 
configuration will be applied to firewall subsystem. 
Traffic coming from WAN interface 
Type Action 
Comments 
Connections Related or 
Established
Accepted 
Traffic initiated from 
router or HotSpot Users 
MNMS connection 
Accepted 
New MNMS connection 
ICMP traffic 
Limited to 
5/sec
All ICMP types 
UDP port 500 and Protocols 
AH, ESP (IPsec) 
Accepted IPsec 
traffic 
Everything else 
Dropped 
 
Traffic coming from HotSpot Interfaces
Type Action 
Comments 
Connections To Internet 
Accepted 
Traffic from HotSpot 
Users
MNMS connection 
Accepted 
New MNMS connection 
ICMP traffic 
Limited to 
5/sec
All ICMP types 
Protocols AH, ESP (IPsec) 
Accepted 
IPsec traffic 
Everything else 
Dropped 
 
High Protection
Policy
 of the Input firewall chain will be set to Drop. The following 
configuration will be applied to firewall subsystem. 
Warning: MNMS Connectivity from WAN or HotSpot interfaces will be lost!