Tranzeo Wireless Technologies Inc GNVPZ1NT3 Manuale Utente
Chapter 15: Controlling Access to the EnRoute500
TR0153 Rev. E1
117
to track the connections for all client devices connected to any of the mesh devices in the
gateway’s mesh neighborhood.
gateway’s mesh neighborhood.
CLI
The connection tracking table size is set by selecting the ‘firewall’ interface and setting the
‘conntrack.table_size’ parameter.
‘conntrack.table_size’ parameter.
> use firewall
firewall> set conntrack.table_size=16384
firewall> set conntrack.table_size=16384
Web GUI
The connection tracking table size is set with the “Conntrack Size” field on the “Connections”
sub-tab on the “Firewall” tab of the “Security” page (see Figure 49). This field is located under
the “Connection Tracking” heading.
sub-tab on the “Firewall” tab of the “Security” page (see Figure 49). This field is located under
the “Connection Tracking” heading.
15.4.3
Connection Tracking Timeout
The connection tracking timeout parameter allows you to flush connections that have been idle
for an extended period of time from the connection tracking table. This will help limit the
maximum required size of the connection tracking table. By default, this parameter is set to
3600 seconds (1 hour).
for an extended period of time from the connection tracking table. This will help limit the
maximum required size of the connection tracking table. By default, this parameter is set to
3600 seconds (1 hour).
CLI
The connection tracking timeout is set by selecting the ‘firewall’ interface and setting the
‘conntrack.tcp_timeout_established’ parameter. The timeout is specified in seconds.
‘conntrack.tcp_timeout_established’ parameter. The timeout is specified in seconds.
> use firewall
firewall> set conntrack.tcp_timeout_established=3600
firewall> set conntrack.tcp_timeout_established=3600
Web GUI
The connection tracking timeout is set with the “Conntrack Connection Timeout” field on the
“Connections” sub-tab on the “Firewall” tab of the “Security” page (see Figure 49). This field is
located under the “Connection Tracking” heading. Specify the timeout limit in seconds.
“Connections” sub-tab on the “Firewall” tab of the “Security” page (see Figure 49). This field is
located under the “Connection Tracking” heading. Specify the timeout limit in seconds.
15.5 Custom Firewall Rules
Custom firewall rules can be added that control how traffic forwarded by an EnRoute500 is
handled. For example, rules can be added to:
handled. For example, rules can be added to: