Tplink Router Firewall Setup method
IP address filtering using IP address filtering to set up the intranet through IP address access to the external network, applicable to this demand: in a certain period of time, prohibit/allow the intranet of a certain IP (segment) All or part of the port and extranet IP all or part of the port communication.
When you turn on IP address filtering, you must turn on the firewall master switch and specify the default filtering rules for IP address filtering (if there is an ambiguous setting, click the Help button on the current page to view Help):
An example: Intended purpose: Do not allow intranet 192.168.1.100-192.168.1.102 IP address to access all IP addresses of the extranet, and allow 192.168.1.103 to access all IP addresses of the extranet completely unrestricted. Set the method as follows:
1. Select the default filtering rule: Any packets that do not conform to the IP address filtering rules are prohibited through this router:
Add IP Address filter new entry: Allow intranet 192.168.1.103 completely unrestricted access to all IP addresses of extranet
Because the default rule is "prohibit packets that do not conform to IP filtering rules through the router", the intranet computer IP address segment: 192.168.1.100-192.168.1.102 does not need to be added, the default is prohibited by the pass.
After saving, generate the following entries, which can achieve the intended purpose:
Example two: Intended Purpose: Intranet 192.168.1.100-192.168.1.102 IP address at any time can only browse the extranet Web page; 192.168.1.103 from 8 o'clock in the morning to 6 o'clock in the afternoon only in the external network 219.134.132.62 mail server to send and receive mail, the rest of the time can not communicate with the external network.
Browse the Web using the 80 port (TP protocol), send and receive e-mail using the (SMTP) and (POP), while the domain name server port number (DNS)
Set the method as follows: Select the default filter rule is: all do not conform to the set IP address filtering rules of the packet, prohibit through this router:
The following entries are generated to achieve the intended purpose: