MSS User Guide 4: Configuration
4-4
IP Security
IP security allows the system administrator to restrict incoming and outgoing TCP/IP
sessions and access to the serial port. Connections are allowed or denied based upon
the source IP address (for incoming connections) or the destination IP address (for
outgoing connections).
IP security information can be added to the IP local host table. To add an entry, specify
an IP address and whether to allow (Enabled) or deny (Disabled) connections. For
example, the command below disables outgoing connections for all addresses between
192.168.0.1 and 192.168.0.254.
Figure 4-11: IP Security Command
Local>> CHANGE IPSECURITY 192.168.0.255 DISABLED
Single addresses can also be specified. See Change IPSecurity in the MSS Reference
Manual for more information.
To view the host table entries, enter the Show IPsecurity command. To remove an
entry, use the Delete IPSecurity command followed by the IP address that you want to
remove.
WINS
If WINS is enabled, the MSS will broadcast a WINS name announcement at boot time,
and answer broadcast WINS name queries. Other hosts can locate the MSS this way.
The MSS will rebroadcast whenever its IP address or name changes.
Figure 4-12: Enabling WINS for MSS-VIA and MSS4
Local>> CHANGE SERVER WINS ENABLED
Figure 4-13: Enabling WINS for MSS100
Local>> CHANGE WINS ENABLED
SNMP
The MSS supports the SNMP network protocol, which allows hosts on the network to
query nodes for counters and network statistics and to change some parameters on
those nodes. The form of these requests is documented by RFC 1098. The list of items
that can be queried and/or set and the type of data used, such as integer and string, are
both documented in various Management Information Bases (MIBs). MIBs cover a variety
of things, such as counters and IP address resolution tables.
The MSS supports the following MIBs:
Table 4-1: Supported MIBS
MIB-II (RFC 1213) System, Interface,
Address Translation, IP,
ICMP, TCP, and UDP,
but not the EGP group.
Character MIB (RFC
1318)
All character-oriented
devices.
RS232 MIB (RFC
1317)
All objects (RS-232-style
objects).