## CentreCOM AR300/AR700 シリーズ 設定例集 2.3 ## 67 IPフィルター ## ルーターAのコンフィグ ADD ISDN CALL=TOOS NUMBER=0612342222 PRECEDENCE=OUT INTREQ=bri0 SET ISDN CALL=TOOS OUTSUB=LOCAL SEARCHSUB=LOCAL CREATE PPP=0 OVER=ISDN-TOOS IDLE=ON ADD USER=BBB PASSWORD=PasswordB LOGIN=NO SET PPP=0 USER=AAA PASSWORD=PasswordA SET PPP=0 OVER=ISDN-TOOS AUTHENTICATION=CHAP ENABLE IP ADD IP INT=eth0 IP=192.168.10.1 MASK=255.255.255.0 ADD IP INT=ppp0 IP=192.168.100.1 MASK=255.255.255.0 ADD IP ROUTE=192.168.20.0 MASK=255.255.255.0 INT=ppp0 NEXTHOP=192.168.100.2 ADD IP FILT=1 SO=192.168.20.4 SM=255.255.255.255 DEST=192.168.10.2 DM=255.255.255.255 AC=INCLUDE SET IP FILT=1 ENTRY=1 DPORT=TELNET PROT=TCP SESS=ANY ADD IP FILT=1 SO=192.168.20.5 SM=255.255.255.255 DEST=192.168.10.2 DM=255.255.255.255 AC=INCLUDE SET IP FILT=1 ENTRY=2 DPORT=FTPDATA PROT=TCP SESS=ESTABLISHED ADD IP FILT=1 SO=192.168.20.5 SM=255.255.255.255 DEST=192.168.10.2 DM=255.255.255.255 AC=INCLUDE SET IP FILT=1 ENTRY=3 DPORT=FTP PROT=TCP SESS=ANY ADD IP FILT=1 SO=192.168.20.5 SM=255.255.255.255 DEST=192.168.10.2 DM=255.255.255.255 AC=INCLUDE SET IP FILT=1 ENTRY=4 DPORT=TELNET PROT=TCP SESS=ANY ADD IP FILT=1 SO=192.168.20.6 SM=255.255.255.255 DEST=192.168.10.2 DM=255.255.255.255 AC=INCLUDE SET IP FILT=1 ENTRY=5 DPORT=FTPDATA PROT=TCP SESS=ESTABLISHED ADD IP FILT=1 SO=192.168.20.6 SM=255.255.255.255 DEST=192.168.10.2 DM=255.255.255.255 AC=INCLUDE SET IP FILT=1 ENTRY=6 DPORT=FTP PROT=TCP SESS=ANY ADD IP FILT=2 SO=192.168.10.2 SM=255.255.255.255 DEST=192.168.20.4 DM=255.255.255.255 PROT=TCP AC=INCLUDE SET IP FILT=2 ENTRY=1 SPORT=TELNET SESS=ESTABLISHED ADD IP FILT=2 SO=192.168.10.2 SM=255.255.255.255 DEST=192.168.20.5 DM=255.255.255.255 PROT=TCP AC=INCLUDE SET IP FILT=2 ENTRY=2 SPORT=TELNET SESS=ESTABLISHED ADD IP FILT=2 SO=192.168.10.2 SM=255.255.255.255 DEST=192.168.20.5 DM=255.255.255.255 PROT=TCP AC=INCLUDE SET IP FILT=2 ENTRY=3 SPORT=FTPDATA SESS=ANY ADD IP FILT=2 SO=192.168.10.2 SM=255.255.255.255 DEST=192.168.20.5 DM=255.255.255.255 PROT=TCP AC=INCLUDE SET IP FILT=2 ENTRY=4 SPORT=FTP SESS=ESTABLISHED ADD IP FILT=2 SO=192.168.10.2 SM=255.255.255.255 DEST=192.168.20.6 DM=255.255.255.255 PROT=TCP AC=INCLUDE SET IP FILT=2 ENTRY=5 SPORT=FTPDATA SESS=ANY ADD IP FILT=2 SO=192.168.10.2 SM=255.255.255.255 DEST=192.168.20.6 DM=255.255.255.255 PROT=TCP AC=INCLUDE SET IP FILT=2 ENTRY=6 SPORT=FTP SESS=ESTABLISHED SET IP INT=ppp0 FILT=1 SET IP INT=eth0 FILT=2