Siemens C10 Betriebsanweisung Seite 100

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 250
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 99
Virtual Network configuration
A31003-W1010-A100-1-7619, July 2005
98 HiPath Wireless Controller, Access Points and Convergence Software V3.0: User Guide
HWC_VNSConfiguration.fm
Filtering rules for a VNS
7.5.4.1 Filtering Rules for an AAA Group VNS
If you defined a child group for an AAA VNS, it will have the same authentication parameters
and Filter IDs as the parent VNS. However, you can define different filtering rules for these
Filters IDs in the child configuration than in the parent configuration.
1. In the Virtual Network Configuration screen, highlight the VNS group name in the list and
click on the Filtering tab. The Filtering screen for this VNS group appears.
2. Follow Steps 2 to 6, as described above for a parent VNS.
3. To save the filtering rules, click on the Save button.
7.5.4.2 Filtering rules between two wireless devices
Traffic from two wireless devices that are on the same VNS and are connected to the same
Wireless AP will pass through the HiPath Wireless Controller and therefore be subject to
filtering policy. You can set up filtering rules that allow each wireless device access to the
default gateway, but prevent each device from communicating each other.
Add the following two rules to a Filter ID filter before allowing everything else:
x Intranet IP 10.3.0.20, ports
10-30
Deny all traffic from the network to the
wireless devices on the port range, such
as TELNET (port 23) or FTP (port 21)
x x Intranet IP 10.3.0.20 Allow all other traffic from the wireless
devices to the Intranet network
x x Intranet IP 10.3.0.20 Allow all other traffic from Intranet network
to wireless devices
x x x *.*.*.*. Allow everything else
In Out Allow IP / Port Description
x x x [Intranet IP] Allow access to the Gateway IP address of the
VNS only
x x [Intranet IP, range] Deny all access to the VNS subnet range 0/24
x x x *.*.*.*. Allow everything else
In Out Allow IP / Port Description
Seitenansicht 99
1 2 ... 95 96 97 98 99 100 101 102 103 104 105 ... 249 250

Kommentare zu diesen Handbüchern

Keine Kommentare