
Network Configuration
IP Filter Rules:
IPv4 Rules:
1: pass on interface lo0 all hits: 0 bytes: 0
2: pass on interface wm1 hits: 32 bytes: 1368
From To
192.168.211.0/24 -> 192.168.211.0/24
3: block on interface wm1 hits: 0 bytes: 0
From To
192.168.211.0/24 -> 192.168.211.0/24
4: pass on interface wm1 hits: 0 bytes: 0
From To
192.168.211.0/24 -> any
5: pass on interface wm1 hits: 0 bytes: 0
From To
any -> 192.168.211.0/24
6: block all hits: 7 bytes: 799
IPv6 Rules:
1: pass on interface lo0 all hits: 0 bytes: 0
2: pass hits: 0 bytes: 0
From To
fe80::/10 -> any
Now that we have a non-blank routing configuration, we can see that the source routing table reflects the change,
and that we have a couple of routing-specific IP Filter rules:
Rule 3
is inserted immediately after any 'pass' rules for this subnet. Because there aren't any other subnets except
this one, this rule will not be used (the previous rule allows all packets that this rule would block).
Rules 4 and 5
allow traffic from non-Equalizer networks into Equalizer and from Equalizer to non-Equalizer
networks. These are the rules that allow routing through the default gateway to work.
The configuration presented in this section corresponds to the following scenario:
84
Copyright © 2013 Coyote Point Systems. A subsidiary of Fortinet, Inc.
Comentarios a estos manuales