Asus Router RX3042H User Manual
Here you can view all the pages of manual Asus Router RX3042H User Manual. The Asus manuals for Router are available online for free. You can easily download all the documents as PDF.
Page 81
RX3042H User's Manual Configuring Firewall 69 FieldDescription SYN/ ICMP/ UDP Flooding Check or un-check this option to enable or disable the logging for SYN/ICMP/UDP flooding attacks. These attacks involve sending lots of TCP SYN/ICMP/UDP to a host in a very short period. RX3042H will not drop the flooding packets to avoid affecting the normal traffic. TCP XMAS/ NULL/ FIN Scan A hacker may be scanning your system by sending these specially formatted packets to see...
Page 82
Configuring Firewall RX3042H User's Manual 70 9.3.2.2 Configuring DoS Settings To configure DoS settings, follow the instructions below:1. Open the Firewall General configuration page as shown in Figure 9.3 by clicking on Firewall ->Security menu. 2. Check or uncheck individual check box for each type DoS protection. 3. Click Apply to save the settings. Figure 9.3. Firewall General Configuration Page 9.4 ACL Rule Configuration Parameters 9.4.1 ACL Rule Configuration Parameters...
Page 83
RX3042H User's Manual Configuring Firewall 71 Table 9.3. ACL Rule Configuration Parameters FieldDescription Filter Direction – choose the available option from the drop-down list to configure the ACL. For dual-WAN configuration, two options are available – LAN ->WAN and WAN ->LAN. For WAN + DMZ configuration, six options are available – LAN ->WAN, WAN ->LAN, LAN ->DMZ, DMZ->LAN, WAN ->DMZ and DMZ ->WAN. ID Add New Click on this option to add a new ACL rule. Rule Number Select a...
Page 84
Configuring Firewall RX3042H User's Manual 72 FieldDescription NAT NoneSelect this option if you donʼt intend to use NAT in this ACL rule. IP AddressSelect this option to specify the IP address of the you want the outgoing traffic to use as the source IP address. Note this option is called. AutoRX3042H automatically uses the IP address of the interface that the traffic is to be forwarded as the source IP address. It is recommended that you select this option if NAT...
Page 85
RX3042H User's Manual Configuring Firewall 73 IP Address, Subnet Select any of these options and enter details as described in the Source IP section above. Service Select a service, from the drop-down list, to which this rule should apply. If the desired service is not listed, click on the Edit button to create a new service. Time Select a time slot during which this rule should apply. EnableCheck this box if you want to activate the ACL rule at the time specified....
Page 86
Configuring Firewall RX3042H User's Manual 74 FieldDescription This option allows you to select the ICMP message type for the service. The supported ICMP message types are: • Any (default) • 0: Echo reply • 1: Type 1 • 2: Type 2 • 3: Dst unreach: destination unreachable • 4: Src quench: source quench • 5: Redirect • 6: Type 6 • 7: Type 7 • 8: Echo req: • 9: Router advertisement • 10: Router solicitation • 11: Time exceed: time exceeded • 12: Parameter problem • 13: Timestamp...
Page 87
RX3042H User's Manual Configuring Firewall 75 Figure 9.4. ACL Configuration Page 9.5.1 Add an ACL Rule To add an ACL rule, follow the instructions below: 1. Open the ACL Rule configuration page, as shown in Figure 9.4, by clicking Firewall ->ACL menu. 2. Select an option from the “Filter Direction” drop-down list. For example, if you want to create an ACL to filter traffic originated from LAN and destined to WAN, then choose LAN ->WAN option. 3. Select Add New from the “ID” drop-down...
Page 88
Configuring Firewall RX3042H User's Manual 76 Figure 9.5. ACL Configuration Example explanation of these fields. 8. Assign a priority for this rule by selecting a number from the Move to drop-down list. Note that the number indicates the priority of the rule with 1 being the highest. Higher priority rules will be examined prior to the lower priority rules by the firewall. 9. Click on the Add button to create the new ACL rule. The new ACL rule will then...
Page 89
RX3042H User's Manual Confi guring Firewall 77 9.5.2 Modify an ACL Rule To modify an inbound ACL rule, follow the instructions below: 1. Open the Outbound ACL Rule Configuration Page by clicking Firewall/NAT ->ACL menu. 2. Click on the icon of the rule to be modifi ed in the inbound ACL table or select the rule number from the ID drop-down list. 3. Make desired changes to any or all of the following fi elds: action, source/destination IP, service, time and log. Please...
Page 90
Configuring Firewall RX3042H User's Manual 78 9.6.1 Add a Self-Access Rule To add a Self-Access rule, follow the instructions below:1. Open the Self-Access Rule Configuration page by clicking Firewall/NAT ->Self-Access ACL menu. 2. Select “Add New” from the “ID” drop-down list. 3. Set desired action (Allow or Deny) from the “ Action” drop-down list. 4. Assign a priority for this rule by selecting a number from the “ Move to ” drop-down list. Note that the number...