Security Firewall management with IP filters
Digi TransPort WR Routers User Guide
81
Command line
To add an IPfilter rule, use the ip-filter command.
For example, to create IPfilter rule 3:
digi.router> ip-filter 3 description Allow WAN SNMP only from 10.20 network
digi.router> ip-filter 3 action accept
digi.router> ip-filter 3 src any-wan
digi.router> ip-filter 3 protocol tcp,udp
digi.router> ip-filter 3 src-ip-address 10.20.0.0/16
digi.router> ip-filter 3 dst-ip-port 161,162
digi.router> ip-filter 3 state on
digi.router> save config
Delete an IP filter rule
Web
To delete one or more IP filter rules:
1. On the menu, click Security > Firewall:
n Select Input IPFilters to delete an input IPfilter.
n Select Routing IPFilters to delete a routing IP filter.
2. Select the rule you want to remove, and click .
3. Click Apply.
Command line
You cannot delete an IP filter rule using the command line, but you can disable a rule using the ip-filter
command.
For example:
digi.router> ip-filter 4 state off
digi.router> save config
Edit an IP filter rule
Web
To edit an IPfilter rule:
1. On the menu, click Security > Firewall:
n Select Input IPFilters to edit an input IPfilter.
n Select Routing IPFilters to edit a routing IP filter.
2. Select the rule you want to edit and click Edit Rule.
3. When you have finished editing the rule, click Apply.