Netopia D3232 IDSL Network Router User Manual


 
Security 8-77
Since the Source IP Network Address in the Netopia D-Series’s filter rule is 01100000 (=96 decimal), and the
source IP address after the logical AND is 01100000, this rule does match and this packet will not be passed.
EE
EE
xx
xx
aa
aa
mm
mm
pp
pp
ll
ll
ee
ee
55
55
Incoming packet has the source address of 200.1.1.96.
Since the Source IP Network Address in the Netopia D-Series is 01100000, and the source IP address after the
logical AND is 01100000, this rule does match and this packet will NOT be passed. This rule masks off a
single IP address.
WW
WW
oo
oo
rr
rr
kk
kk
ii
ii
nn
nn
gg
gg
ww
ww
ii
ii
tt
tt
hh
hh
FF
FF
ii
ii
ll
ll
tt
tt
ee
ee
rr
rr
ss
ss
aa
aa
nn
nn
dd
dd
ff
ff
ii
ii
ll
ll
tt
tt
ee
ee
rr
rr
ss
ss
ee
ee
tt
tt
ss
ss
This section covers Filters and filter sets.
To work with filters and filter sets, begin by accessing the filter set screens.
Note: Make sure you understand how filters work before attempting to use them. Read the section “About
filters and filter sets,” beginning on page 8-64.
255.255.255.240 11110000 (Perform the logical AND)
01100000 (Logical AND result)
Filter Rule: 200.1.1.96 (Source IP Network Address)
255.255.255.255 (Source IP Mask)
Forward = No (What happens on match)
IP Address Binary Representation
200.1.1.96 01100000 (Source address in incoming IP packet)
AND
255.255.255.255 11111111 (Perform the logical AND)
01100000 (Logical AND result)
Main
Menu
System
Configuration
Filter
Sets