ZyXEL p-660h-61 Guida Utente

Pagina di 354
Prestige 660H Series User’s Guide 
Filter Configuration 
        30-7 
Table 30-3 Menu 21.1.x.1 TCP/IP Filter Rule 
FIELD DESCRIPTION 
EXAMPLE 
Port # Comp 
Select the comparison to apply to the destination port in the 
packet against the value given in Destination: Port #. Choices 
are NoneLessGreaterEqual or Not Equal
None 
Source:  
 
IP Addr 
Type the source IP Address of the packet you want to filter. A 
0.0.0.0 field is ignored. 
IP address 
IP Mask 
Type the IP mask to apply to the Source: IP Addr field. 
IP mask 
Port # 
Type the source port of the packets you want to filter. The range 
of this field is 0 to 65535. A 0 field is ignored. 
0 to 65535 
Port # Comp 
Select the comparison to apply to the source port in the packet 
against the value given in Source: Port # field. Choices are 
NoneLessGreaterEqual or Not Equal
None 
TCP Estab 
This applies only when the IP Protocol field is 6, TCP.   If Yes
the rule matches packets that want to establish TCP 
connection(s) (SYN=1 and ACK=0); else it is ignored. 
No 
(default) 
More 
If Yes, a matching packet is passed to the next filter rule before 
an action is taken or else the packet is disposed of according to 
the action fields. 
If More is Yes, then Action Matched and Action Not Matched 
will be N/A. 
No 
(default) 
Log 
Select the logging option from the following: 
None – No packets will be logged. 
Action Matched – Only packets that match the rule parameters 
will be logged. 
Action Not Matched – Only packets that do not match the rule 
parameters will be logged. 
Both – All packets will be logged. 
 
None 
 
Action Matched 
Select the action for a matching packet. Choices are Check 
Next Rule
Forward or Drop
Check Next Rule  
(default) 
Action Not Matched 
Select the action for a packet not matching the rule. Choices are 
Check Next RuleForward or Drop
Check Next Rule  
(default) 
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC to cancel” 
to save your configuration or press [ESC] to cancel and go back to the previous screen. 
The following figure illustrates the logic flow of an IP filter.