Figure 34 Firewall Window - Nokia 7368 Product Manual

Intelligent services access manager cpe
Hide thumbs Also See for 7368:
Table of Contents

Advertisement

 
7368 ISAM CPE A-240Z-A Product Guide
Procedure 25
Issue: 01
 
Firewall configuration
1
Select Security > Firewall from the top-level menu in the Ethernet Gateway window, as
shown in Figure 34.
Figure 34
Firewall window
Firewall security applies only to services provided by the CPE. Internet access from the LAN
side is not affected by this firewall.
Three security levels are available: Low, Medium, and High.
At the Low level, pre-routing is supported: port forwarding, DMZ, host application, and host
drop. Also supported are application services: DDNS, DHCP, DNS, H248, IGMP, NTP client,
SSH, Telnet, TFTP, TR-069, and VoIP.
At the Medium level, pre-routing is supported: port forwarding, DMZ, host application, and
host drop. Also supported are application services: DDNS, DHCP, DNS, H248, IGMP, NTP
client, TFTP, TR-069, and VoIP. The following types of ICMP messages are permitted: echo
request and reply, destination unreachable, and TTL exceeded. Other types of ICMP
messages are blocked. DNS proxy is supported from LAN to WAN but not from WAN to LAN.
At the High level, pre-routing and application services are not supported. UDP Port 8000 can
be used to access the services, for example FTP can use 8021 and Telnet can use 8023.
Regular UDP cannot be used. RG access is permitted via the LAN side but not via the WAN
side.
Table
29
describes the fields in the firewall window.
3FE-46615-AAAA-TCZZA
Configure an A-240Z-A CPE
91

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents