Page 18
Ver 1.
6
Layer 4 filtering captures protocols riding on layer 3 IP. Specifically the IP port number, 0-255, which
identifies the Layer 4 protocol in the packet. Two of the protcols, TCP=6, and UDP=17, contain source and
destination ports which can also be used as keys for filters.
Layer 4 filtering
ICMP filter
ICMP is identified as IP protocol =1. Using previously explained commands, we create a new filter named
'ICMP', B2->C3...
Edit Filter:
1. Name
: ICMP
2. Ports
: [unav| i | o
|
]
3. Counter Used
: YES
4. Source MAC Address
:
5. Destination MAC Address:
6. VLAN ID
:
7. Layer 3
:
0: Exit
Enter menu selection:
Setting up IP protocol 1...
We have set up a filter named
ICMP
B2->C3 Press
to return to the
Row 1 Filters screen
Figure 65: setting up IP protocols
Edit Filter:
1. Name
: ICMP
2. Ports
: [unav| i | o |
]
3. Counter Used
: YES
4. Source MAC Address
:
5. Destination MAC Address:
6. VLAN ID
:
7. Layer 3
:
0: Exit
Enter menu selection:7
i.IP:
n.non-IP
e.no-filter
any other key.no change
Select layer 3 type[no filter]:
Selecting IP protocol
Figure 66: Setting up IP protocol
Press
i
to begin setting up the IP protocol
Edit Filter:
1. Name
: ICMP
2. Ports
: [unav| i | o
|
]
3. Counter Used
: YES
4. Source MAC Address
:
5. Destination MAC Address:
6. VLAN ID
:
7. Layer 3
: IP
8. Source IP address
:
9. Destination IP address :
a. DSCP
:
b. Layer 4
:
0: Exit
Enter menu selection:b
filter on layer 4(IP protocol)?[N]:y
t.tcp:
u.udp
h.other
any other key.no change
IP protocol[0]:
Figure 67: Select Layer 4
Enter
and press ENTER to get back to the Edit milter menu
Edit Filter:
1. Name
: ICMP
2. Ports
: [unav| i | o
|
]
3. Counter Used
: YES
4. Source MAC Address
:
5. Destination MAC Address:
6. VLAN ID
:
7. Layer 3
: IP
8. Source IP address
:
9. Destination IP address :
a. DSCP
:
b. Layer 4
:
0: Exit
Enter menu selection:b
filter on layer 4(IP protocol)?[N]:y
t.tcp:
u.udp
h.other
any other key.no change
IP protocol[0]:
Enter IP Protocol (decimal 0-255):1
Choose to filter on layer 4
Program provides what you can choose from
Press
b
to set up a filter on layer 4. Program adds the line
filter on layer 4
(IP protocol) ? [N]
Press
y
and the program adds the choices available to
choose from. Press
h
The program adds the line
Enter IP protocol
(decimal 0-255)
Figure 68: select from new menu items
Garland Technology M1G1ACE (Code Version:1.0.21)
Row 1 Filters ***FILTER CONFIGURATION NOT SAVED OR APPLIED***
#: Name
Ports
Count
1:
src IP fltA
[Unav|i o|
|
] 0
2:
Case 432A
[unav| i |
|i o]
0
3:
Case 432A dmac
[unav| i |
|i o]
0
4: abc
[unav|i | o |
]
0
-> 5:
DSCP=21
[unav|
|
|i o ]
u:cursor up d:cursor down
t:filter up g:filter down
a:add
e:edit
i:insert
x:delete
v:view
c:clear count
r:reset
h:help
0:exit *** s:SAVE AND APPLY FILTERS ***
Select:
Back at the Row 1 filters screen
We are finished with the Layer 3 level filters. Next we will work on the Layer 4 filters
Figure 64: begin entering the VLAN ID
M1G2ACE/M1G2DCE
M1G1ACE/M1G1DCE
M1G2ACE/M1G2DCE
M1G1ACE/M1G1DCE