Different permissions for opening the LAN in TP-LINK router settings

Source: Internet
Author: User

TP-LINK router settings-firewall settings

After you access the Internet, you may want to grant different permissions to computers on the LAN for personal reasons, for example, many enterprises and institutions only allow users to log on to certain websites, or only allow users to send and receive E-mails and teammates over the Internet. Some users are not restricted, some of these requirements can be achieved through vrouters, and some cannot be completed by vrouters. For example, if you bind an IP address to a NIC address, the vro cannot do the same.

The process of accessing the Internet is actually that the computer constantly sends request packets. These request packets contain many parameters, including the source IP address, destination IP address, source port, and destination port. The router controls the Internet access permissions of different users in the internal LAN by limiting these parameters.

It is the firewall setting page. In fact, this is a general switch setting page. Do not select any function that is not used. In addition to the general switch, there are two filtering functions. The default filtering rule is to define some specific rules on the specific rule settings page to control and process qualified data packets, the default rule specifies that the custom rule does not contain non-conforming data packets. A data packet must either comply with the set rules or do not comply with the set rules, but must also comply with the default rules.

TP-LINK router settings -- rule settings

You can see the default filtering rules for IP address filtering. You can enter a new entry.

Is the detailed rule settings page, the parameters are as above. Configure a rule: restrict a computer on the internal LAN, and set its IP address to 192.168.1.17. You can enter the website address that only allows the computer to log on to in the box that follows. No other operations can be performed. This rule allows an intranet computer to send data packets to the Internet. The source IP address of the data packet is the IP address 192.168.1.17 of the machine to be restricted. The destination IP address of the data packet is the public IP address corresponding to the added domain name, the Wan request is based on website restrictions, so the port number is 80. The rule is set as follows:

You can clearly see on the configured rules page that the rule takes effect for 24 hours and the control object is the host with the IP address 192.168.1.17. The port next to the LAN is not required by default, fill in the wan ip Address Bar with only the public IP addresses that can be logged on. Fill in 80 for the port number because it is a website. The protocol is generally set to ALL by default. Because the default rule prohibits packets that do not conform to the rules from passing through the vro, the packets that comply with the rules are allowed to pass, and the rule status is effective. If the target request port is port 80, you must allow the packets corresponding to port 53 to pass, because 53 corresponds to the packets sent to the domain name resolution server, it is used to map the domain name and IP address, so it must be enabled.

The IP address filtering rule configuration function in TP-LINK router settings is mainly to analyze what control to do, then select the default rule and configure filtering rules. It is recommended that you carefully read the reference materials of the vro and try again and again on the vro. I believe you can master the skills you need.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.