Fieldgate FXA42
Operation
Hauser
97
The firewall of the device has a blocking policy. This means that while outgoing
connections are generally allowed, incoming connections will be generally blocked. Only
specific incoming connections are allowed if there is a rule allowing the connection.
The firewall can be enabled and the maximum number of rules configured on the
Firewall
page. This determines the number of incoming and outgoing connections that can be
handled simultaneously.
When enabling the firewall, always make sure that a number of static rules are
defined that allow to access the web server. This is important to be able to disable the
firewall if necessary. If the firewall is enabled without any appropriate rules, it will not
be possible to access the device in any way. If this occurs, the device must be reset to
the factory settings.
Dynamic rules
Dynamic rules are created by the firewall for outgoing connections. The period of time the
dynamic rules will be valid (time to live) must be configured in minutes.
Static rules
Up to 30 static firewall rules can be added. Static rules allow access to a specific service on
the device from the network. Static rules have the following parameters:
Network interface
Determines the network interface from which connections should be accepted. For
example, if access to the device's web server should only be allowed from the local area
network, select the Ethernet interface here. If a rule is not intended for a specific network
interface, select the
Any
option.
Service
This selection provides a set of predefined services to which connections can be permitted.
If the desired service is not on the list, choose the
Other
option in order to manually specify
the service's protocol and port(s).
Protocol
This parameter only appears if the
Other
option is selected under
Service
. It determines
which base protocol (TCP or UDP) is used by the service that should be allowed.