Configure a Gateway 3 (G-240W-E)
92
Nokia WiFi Gateway 3 Product Guide
3FE-47464-AAAA-TCZZA Issue: 01
Procedure 24 Firewall configuration
1 Select Security > Firewall from the top-level menu in the Ethernet Gateway window, as
shown in Figure 32.
Figure 32 Firewall window
Firewall security applies only to services provided by the Gateway 3 (G-240W-E). Internet
access from the LAN side is not affected by this firewall.
Three security levels are available: Off, Low, and High.
At the Off level, no firewall security is in effect,
At the Low level, pre-routing is supported: port forwarding, DMZ, host application, and host
drop. Also supported are application services: DDNS, DHCP, DNS, H248, IGMP, NTP client,
SSH, Telnet, TFTP, TR-069, and VoIP. The following types of ICMP messages are permitted:
echo request and reply, destination unreachable, and TTL exceeded. Other types of ICMP
messages are blocked. DNS proxy is supported from LAN to WAN but not from WAN to LAN.
At the High level, pre-routing and application services are not supported. UDP Port 8000 can
be used to access the services, for example FTP can use 8021 and Telnet can use 8023.
Regular UDP cannot be used. RG access is permitted via the LAN side but not via the WAN
side.
Table 30 describes the fields in the firewall window.
Table 30 Firewall parameters
Field Description
Security level Choose the security level from the drop-down menu: Off, Low, or High
(1 of 2)