Specifying IP Addresses in Firewall Settings
You can set whether to allow or reject communication with a device that has a specific IP address. After configuring the IP addresses in the firewall settings, you can check the results in the log of blocked communication requests. You can also set whether to allow or reject ICMP communications such as PING commands, etc., after specifying firewall settings.
1
2
Click [Settings/Registration] on the portal page.
Remote UI Screen3
Click [Network Settings]
[Outbound Filter] or [Inbound Filter] for [IPv4 Address Filter]/[IPv6 Address Filter].
Select the filter that matches the target IP address. To restrict data sent from the machine to a computer, select [Outbound Filter]. To restrict data received from a computer, select [Inbound Filter].
4
Specify the settings for packet filtering.
Select the default policy to allow or reject the communication of other devices with the machine, and then specify IP addresses for exceptions.
[
Use Filter]
Select the check box to restrict communication. Clear the check box to disable the restriction.
[
Default Policy]
Select the precondition to allow or reject the communication of other devices with the machine.
[Reject] | Select to pass communication packets only when they are sent to or received from devices whose IP addresses are entered in [Exception Addresses]. Communications with other devices are prohibited. |
[Allow] | Select to block communication packets when they are sent to or received from devices whose IP addresses are entered in [Exception Addresses]. Communications with other devices are permitted. |
5
Click [Register New].
6
Specify exception addresses.
Enter the IP address (or range of IP addresses) in [Address to Register].
If the IP address is incorrectly entered, you may be unable to access the machine from the Remote UI. In this case, set <Use Filter> to <Off> for <Outbound Filter>/<Inbound Filter> in <IPv4 Address Filter> or <IPv6 Address Filter> from the control panel.
If IP addresses are incorrectly entered, you may be unable to access the machine from the Remote UI, in which case you need to set <IPv4 Address Filter> or <IPv6 Address Filter> to <Off>.
<Network>Entry form for IP addresses
| Description | Example |
Entering a single address | IPv4: Delimit numbers with periods. | 192.168.0.10 |
IPv6: Delimit alphanumeric characters with colons. | fe80::10 |
Specifying a range of addresses | Insert a hyphen between the addresses. | 192.168.0.10-192.168.0.20 |
Specifying a range of addresses with a prefix | Enter the address, followed by a slash and a number indicating the prefix length. | 192.168.0.32/27
fe80::1234/64 |
When [Reject] is selected for an outbound filter
Outgoing multicast and broadcast packets cannot be filtered.
7
Specify the port number as required.
The exception address setting only applies to communication received from the specified IP address using the designated port number. Enter the port number, and click [Add].You can register up to 50 ports per one exception address for both IPv4/IPv6.
8
Click [OK].
Deleting an IP address from exceptions
Click [Delete] for the exception address to delete.
|
Checking the blocked communication requests in the logThe latest 100 communications blocked by the firewall can be checked in [Settings/Registration] [Network Settings] [IP Address Block Log]. The history of blocked communications can be exported from the Remote UI in the CSV format. Exporting a Log as a FileIf [Default Policy] is set to [Reject], the history of communication blocked by the firewall is not displayed in [IP Address Block Log]. To allow or reject ICMP sending and receivingClick [Settings/Registration] [Network Settings] [IPv4 Address Filter]/[IPv6 Address Filter] [ICMP Sending/Receiving Settings] select or deselect [Always Allow Sending/Receiving Using ICMP]. Using the control panelYou can also enable or disable IP address filtering from <Set> in the <Home> screen. <Network>Batch importing/batch exporting |
LINKS