Skip to main content

Firewall Configuration

Configuring a Simple Firewall


The Cisco 1800 integrated services routers support network traffic filtering by means of access lists. The router also supports packet inspection and dynamic temporary access lists by means of Context-Based Access Control (CBAC).
Basic traffic filtering is limited to configured access list implementations that examine packets at the network layer or, at most, the transport layer, permitting or denying the passage of each packet through the firewall. However, the use of inspection rules in CBAC allows the creation and use of dynamic temporary access lists. These dynamic lists allow temporary openings in the configured access lists at firewall interfaces. These openings are created when traffic for a specified user session exits the internal network through the firewall. The openings allow returning traffic for the specified session (that would normally be blocked) back through the firewall.
.

8-1 Router with Firewall Configured
1.    Multiple networked devices—Desktops, laptop PCs, switches.
2.    Fast Ethernet LAN interface (the inside interface for NAT)
3.    PPPoE or PPPoA client and firewall implementation—Cisco 1811/1812 or Cisco 1801/1802/1803 series integrated services router, respectively
4.    Point at which NAT occurs
5.    Protected network
6.    Unprotected network
7.    Fast Ethernet or ATM WAN interface (the outside interface for NAT)
In the configuration example that follows, the firewall is applied to the outside WAN interface (FE0) on the Cisco 1811 or Cisco 1812 and protects the Fast Ethernet LAN on FE2 by filtering and inspecting all traffic entering the router on the Fast Ethernet WAN interface FE1. Note that in this example, the network traffic originating from the corporate network, network address 10.1.1.0, is considered safe traffic and is not filtered.
Configuration Tasks
Perform the following tasks to configure this network scenario:
·                 Configure Access Lists
·                 Configure Inspection Rules
·                 Apply Access Lists and Inspection Rules to Interfaces
More Click on:- http://www.cisco.com/c/en/us/td/docs/routers/access/1800/1801/software/configuration/guide/scg/firewall.html


Comments

Popular posts from this blog

Mobile Device Review Framework

  Performance benchmarks that matter most Real-world performance testing goes far beyond just looking at processor speeds and RAM numbers. When conducting mobile phone reviews, focus on benchmarks that reflect how users actually interact with their devices daily. Start with multitasking scenarios - open 10-15 apps simultaneously and switch between them rapidly. Time how long each app takes to reload from memory. Premium smartphones should keep multiple apps active without constant refreshing, while budget devices might struggle after 5-6 apps. Gaming performance reveals thermal management capabilities. Run graphically intensive games for 30-minute sessions while monitoring frame rates and device temperature. Note any throttling that occurs - many devices start strong but slow down significantly as they heat up. Storage speed impacts everything from app launches to photo processing. Use tools like AndroBench or 3DMark to measure sequential read/write speeds. Modern flagship phones s...

OSI MODEL (Open Systems Interconnection model )

To Day I Explain OSI MODEL,   Open Systems Interconnection model  ( OSI ) is a conceptual model that characterizes and standardizes the internal functions of a communication system by partitioning it into  abstraction  layers. The model is a product of the Open Systems Interconnection project at the International Organization for Standardization (ISO), maintained by the identification ISO/IEC 7498-1. The model groups communication functions into seven logical layers. A layer serves the layer above it and is served by the layer below it. For example, a layer that provides error-free communications across a network provides the path needed by applications above it, while it calls the next lower layer to send and receive packets that make up the contents of that path. Two instances at one layer are connected by a horizontal connection on that layer.  The Below Shown Diagram is helpful to understand the OSI seven Layer Model. OSI MODEL EXPLANATION Th...

Networking Colour Code Scheme

I Post Network Colour Code Here and Some image add in In the 21st Century Everyone Use INTERNET and they face networking problem with the chosse wrong network cable. Many Company, Engineers, Mostly Cyber Cafe and Shops of Photocopy. Here you get the solution how to choose correct wire for network. Network Cable : Colour Code : For connecting Category 3 and Category 5 wire to connectors. Both are appropriate for high speed data, though 568B is somewhat more common for installed wiring and 568A is more common in jumpers. There is no performance advantage either way. The only real difference between the two is the order in which the pairs are used (orange and green). a cable as if to plug it into a wall jack, the locking tab down (contacts facing you). The contacts are numbered 1-8 from left to right. Here's what you will see: Colour Code for 568b: (Male Connector) 1. Orange white/orange 2. Green white 3. Blue/ Blue white 4. Green 5. Brown White/Brown ...