![]() ![]() Therefore, the bridge interface name is specified on the host access control for the applied IP filter and server function above the IP layer. In other words, if you want to apply a filter above the IP layer, you need to specify the bridge interface name rather than the accommodated interface name. For example, in the above diagram, if received packets on the lan1 interface on the LAN side were self-addressed (the destination MAC address is its own address), the reception interface is handled as bridge1 after being received on the IP layer. Self-addressed packets are handled as transmitted on the accommodated bridge interface when processed on the IP layer (元) and lower. The following needs to be noted when configuring the filters. ![]() Thus, by applying the Ethernet filter, intrusion detection, inbound filter, URL filter, and policy filter to each accommodated interface, it can be used as a transparency firewall. It is only applied in the in (receive) direction. *2 In the out (send) direction, the inbound filter is not applied.*1 In the out (send) direction, the intrusion detection function is applied after the policy filter. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |