Firewall Packet filtering
IX20 User Guide
945
Packet filtering
By default, there are two preconfigured packet filtering rules:
n
Allow all outgoing traffic: Monitors traffic going to and from the IX20 device. The predefined
settings are intended to block unauthorized inbound traffic while providing an unrestricted
flow of outgoing data.
n
Allow Hotspot to External: Allowstraffic that usesthe hotspot firewall zone to be forwarded
to interfaces that use the External zone. You should not modify this packet filtering rule.
Configure packet filtering
Required configuration items
n
The action that the packet filtering rule will perform, either Accept, Reject, or Drop.
n
The source firewall zone: Packets originating from interfaceson thiszone will be monitored by
this rule.
n
The destination firewall zone: Packets destined for interfaces on this zone will be accepted,
rejected, or dropped by this rule.
Additional configuration requirements
n
Alabel for the rule.
n
The IPversion to be matched, either IPv4, IPv6, or Any.
n
The protocol to be matched, one of:
l
TCP
l
UDP
l
ICMP
l
ICMP6
l
Any
To configure a packet filtering rule:
Web
1. Log into Digi Remote Manager, or log into the local Web UI asa user with full Admin access
rights.
2. Access the device configuration:
Remote Manager:
a. Locate your device as described in Use Digi Remote Manager to view and manage your
device.
b. Click the Device ID.
c. Click Settings.