Download AVM Access Server englisch

Transcript
Examples of IP Filter Profiles
Incoming Filter Profile (Upper, Stateful)
“Incoming Internet profile (upper, stateful)”
Profile active
Yes
Name
Incoming Internet profile (upper, stateful)
Default action
Drop
Rules
Status
Service/Source/Destination Action
Remarks
Active
All packets for outgoing
connections
Accept
This rule is part of the AVM
Access Server’s “stateful”
packet inspection. Do not
change this rule if you want
to use stateful inspection.
Active
All packets for incoming
connections
Accept
This rule is part of the AVM
Access Server’s “stateful”
packet inspection. Do not
change this rule if you want
to use stateful inspection.
Active
All packets
Drop
All packets that have not
been accepted or dropped
above this point are treated
as intrusion attempts. These
may be tunneled packets
(i.e. IP-over-IP encapsulated
packets), or routing
protocols, such as OSPF or
EGP packets. These packets
would also be dropped by
the filter profile’s default
action, of course. This rule is
nonetheless included so
that you can activate its log
option if you want to trace an
attack on your firewall.
AVM Access Server – 5 AVM Access Server Concepts and Functional Principles
69