PLANET VIP-360PT User Manual
Page 56

Firewall supports two types of rules: input access rule and output access rule. Each type supports at
most 10 items.
Through this web page, you could set up and enable/disable firewall with input/output rules. System
could prevent unauthorized access, or access other networks set in rules for security. Firewall, is also
called access list, is a simple implementation of a Cisco-like access list (firewall). It supports two access
lists: one for filtering input packets, and the other for filtering output packets. Each kind of list could be
added 10 items.
We will give you an instance for your reference.
Field name
explanation
In access enable
Select it to Enable in_ access rule
out access enable
Select it to Enable out_ access rule
Input/Output
Specify current adding rule by selecting input rule or output rule.
Deny/Permit
Specify current adding rule by selecting Deny rule or Permit rule.
Protocol Type
Filter protocol type. You can select TCP, UDP, ICMP, or IP.
Port Range
Set the filter Port
range
Src Addr
Set source address. It can be single IP address, network address,
complete address 0.0.0.0, or network address similar to *.*.*.0
Des Addr
Set the destination address. It can be IP address, network address,
complete address 0.0.0.0, or network address similar to *.*.*.*
Src Mask
Set the
source address’ mask. For example, 255.255.255.255 means
just point to one host; 255.255.255.0 means point to a network which
network ID is C type.
Des Mask
Set the
destination address’ mask. For example, 255.255.255.255
means just point to one host; 255.255.255.0 means point to a network
which network ID is C type.
Click the Add button if you want to add a new output rule.
Then enable out access, and click the Apply button.
So when devices execute to ping 192.168.1.118, system will deny the request to send ICMP request to
192.168.1.118 for the out access rule. But if devices ping other devices which network ID is 192.168.1.0,
it will be normal.