ATL Telecom AM2 User Manual
Page 83
ATL User Guide
AM2 G.SHDSL Modem
83
DMZ
To setup the demilitarized zone, move the cursor ">>" to the dmz and press the enter key. The following
sub-menu will be displayed.
>>
active
Tigger DMZ host function
address
Configure virtual IP address and interface
You can enable the demilitarized zone via the active command.
After enabling the DMZ, shift the cursor to the address command and press the enter key.
Command: setup ip_share dmz address
Message: Please input the following information.
Virtual IP address: 192.168.0.251
Active interface number (Enter for default) <1>: 1
7.3.2.1.9
FIREWALL
The product supports advanced firewall. To setup the advanced firewall, you can use the firewall command.
>>
Level
Configure firewall security level
pkt_filter
Configure packet filter
dos_protection
Configure DoS protection
Level
There are three levels of firewall which you can setup in this product.
Level one, basic, only enables the NAT firewall and the remote management security. The NAT firewall will
take effect if the NAT function is enabled. The remote management security defaults to block any WAN side
connection to the device. Non-empty legal IP pool in ADMIN will block all remote management connection
except those IPs specified in the pool.
Level two, automatic, enables basic firewall security, all DoS protection, and the SPI filter function.
Level three, advanced, is an advanced level of firewall where the user can determine the security level for
special purpose, environment, and applications by configuring the DoS protection and defining an extra
packet filter with higher priority than the default SPI filter. Note that, an improper filter policy may degrade
the capability of the firewall and/or even block the normal network traffic.
The firewall security level can be configured via the The level command.
7