Configuring IP Filters and Blocked Protocols
142
- A Private interface connects to your LAN, such as
the Ethernet interface. Packets received on a private
interface are subject to a less restrictive set of protections,
because they originate within the network. Typically, the
global setting for private interfaces is [Accept], so that
LAN computers have access to the ADSL Barricade's
Internet connection.
-
The term DMZ (de-militarized zone), in Internet networking
terms, refers to computers that are available for both
public and in-network accesses (such as a company's
public Web server). Packets received on a DMZ interface
- whether from a LAN or an external source - are subject
to a set of protections that is in between Public and
Private interfaces in terms of restrictiveness. The global
setting for DMZ-type interfaces may be set to [Deny] so
that all attempts to access these servers are denied by
default; the administrator may then configure IP filter
rules to allow accesses of certain types.