4200 User Manual Edgewater Networks, Inc.
Version 3.0 24
o Allow UDP Port --
allow the UDP port numbers to which you want
to grant access.
☞
Multiple port values can be enter by separating the values with
a space e.g. 8070 8080 8090
o Trusted Management Addresses --
Within the Trusted
Management Addresses Settings, define a list of trusted WAN
management host addresses or network/masks. The basic firewall
rules will be applied only to those addresses. All other WAN addresses
will be blocked from accessing the device. appropriate checkboxes.
☞
Address can be host IP or network/mask, e.g. 10.10.10.10 or
10.10.10.0/24. To delete an entry, highlight and delete it.
o Advanced WAN firewall Settings --
These settings apply to
packets being forwarded to systems running behind the firewall. Within
the Advanced Settings, allow the TCP and UDP port numbers to
which you want to grant or deny access to the LAN devices.
o Enable Firewall Logging --
Logging for packets dropped by the
firewall can be enabled by checking the box. Because port scanning,
login attacks, etc. are common when connected to a public network,
logging is disabled by default.
When enabling logging, use caution! Firewall logging may affect
call quality and system performance. It may also use network
bandwidth if system logging is enabled over the WAN.
o Enable PPTP Sever Pass-Through --
Enable pptp server pass-
through allows the user to place a PPTP server on the LAN side with a
private IP address. This allows Windows PPTP (Point to Point Tunneling
Protocol) to pass through to a Windows server, but firewalls the server
from other traffic.
o PPTP Server IP Address --
This should be set to the private IP
address of the pptp server. All outside users will use the systems
public IP address to access the PPTP server. The Windows server has a
private IP address, which is NAT'ed by the system.
o Deny Host (IP) --
Enter the IP address on the LAN side device of
the host to which you want to deny access. The will drop all traffic
destine for this host on any port to this host.
☞
Multiple IP values can be enter by separating the values with a
space e.g. 10.10.10.10 11.11.11.11 or for the entire subnet
10.10.10.0/24
o Deny Hostwise TCP (IP-Port) --
Enter the TCP IP address and
Port on the LAN side device of the host to which you want to deny