EasyManua.ls Logo

Lantronix Maestro E220 Series User Manual

Lantronix Maestro E220 Series
213 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #149 background imageLoading...
Page #149 background image
Network
E220 Series Cellular Router User Guide 149
Parameters Description
Static IPv4 Routes
Name Enter the name of the zone.
Input Select to accept or reject the inbound traffic to all the configured
zones.
Output Select to accept or reject the outbound traffic from all the configured
zones.
Forward Select to accept or reject the forwarded traffic from all the configured
zones.
Masquerading Check to allow IP Masquerading.
MSS clamping Check to allow MSS clamping.
Covered network Select the network interfaces that must be included in the zone
configuration.
Inter-Zone Forwarding
Allow forward to destination
zones
Select to allow or deny forwarding traffic to the configured
destination zone.
Allowed forward from source
zones
Select to allow or deny forwarding traffic from the configured source
zone.
Table 10.9-2: General Configuration for Firewall Zone (LAN)
Concept of zone based Firewall
A zone section groups one or more interfaces and serves as source or destination for forwarding,
rules, and redirects. Masquerading (NAT) of outgoing traffic is controlled on a per zone basis. Note
that masquerading is defined in the outgoing interface.
INPUT rules for a zone describe what happens to traffic trying to reach the router itself through
an interface in that zone.
OUTPUT rules for a zone describe what happens to traffic originating from the router itself going
through an interface in that zone.
FORWARD rules for a zone describe what happens to traffic passing between different
interfaces in that zone.
By default, there are 2 zones which are already created in the Router, Viz LAN Zone and WAN Zone.
All traffic from LAN to WAN has no restrictions but all incoming traffic on WAN side is blocked unless a
port forwarding rule is set or unless a particular port is opened.
Drop vs Reject
DROP
less information is exposed
less attack surface
client software may not cope well with it (hangs until connection times out)
may complicate network debugging (where was traffic dropped and why)
REJECT
may expose information (like the ip at which traffic was actually blocked)
client software can recover faster from rejected connection attempts
network debugging easier (routing and firewall issues clearly distinguishable)
Question and Answer IconNeed help?

Do you have a question about the Lantronix Maestro E220 Series and is the answer not in the manual?

Lantronix Maestro E220 Series Specifications

General IconGeneral
BrandLantronix
ModelMaestro E220 Series
CategoryNetwork Router
LanguageEnglish

Summary

Overview

Getting Started

Prerequisite

Required hardware, software, and network access for router setup.

Default Configuration

Default credentials for web admin and Wi-Fi, along with basic config.

LED Behavior

Explanation of the router's LED indicators and their meanings.

Logon Procedure

Step-by-step guide to log into the router's web administration console.

Quick Setup

Guided process to configure basic network parameters for router operation.

Status and Monitoring

System Status

Details on router make, model, firmware, uptime, and system information.

Cellular Status

Status of the inserted SIM card and the cellular network connection.

Network Status

Status of IPv4 and IPv6 WAN network interface connections.

Realtime Graphs

Visual representation of real-time router activities like traffic, load, and Wi-Fi performance.

System and Administration

System Settings

Configuration of local time, timezone, and synchronization settings for the router.

Administration

Management of router security, including password and SSH access settings.

Software Management

Managing installed and available software packages on the router.

Backup / Flash Firmware

Procedures for backing up configurations and updating the router's firmware.

Network Configuration

Interface Management

Overview and configuration of network interfaces, including protocols and status.

IP Addressing and DNS

Configuration for DHCP server and DNS-forwarder for IP assignment and name resolution.

Wireless Connectivity

Configuration of Wi-Fi access point, security settings, and client modes.

Load Balancing

Mechanism to distribute traffic across various network links for optimized performance.

Security Features

Firewall

Configuration of firewall rules for IPv4 and IPv6 traffic to control network access.

Port Forwarding

Rules to redirect external traffic to specific internal IP addresses and ports.

Services

VPN

Setup and configuration of various VPN protocols like PPTP, IPSec, L2TP, GRE, and OpenVPN.

SMS

Configuring SMS for diagnostic information and router control commands.

GPS

Configuration of the GPS receiver for time synchronization and location data.

Appendices

Wiring Diagrams

Visual diagrams illustrating hardware connections for RS485 and Power over Ethernet.