Lost Password? No account yet? Sign up! Why bother?
  • Narrow screen resolution
  • Wide screen resolution
  • Auto width resolution
  • Increase font size
  • Decrease font size
  • Default font size

SmallNetBuilder - Small Network Help

  
Home arrow LAN & WAN arrow LAN & WAN Reviews arrow Linksys RV082 10/100 8-Port VPN Router reviewed
Linksys RV082 10/100 8-Port VPN Router reviewed Print E-mail
Scott Sidel   
April 29, 2004

Firewall Controls

We've already covered some of the aspects of the firewall, such as it using stateful packet inspection. The firewall controls (Figure 7) are typical of most firewalls in its class, and is nearly identical to what is found elsewhere in the Linksys router line. From the Firewall Tab you can create and modify Network Access Rules to evaluate the network traffic's Source IP address, Destination IP address, and IP protocol type to decide if the IP traffic is allowed to pass through the firewall.

Linksys RV802 - Firewall Network Access Rules

Figure 7: Firewall Network Access Rules

Using custom rules (Figure 8), it is possible to disable all firewall protection or block all access to the Internet, so use extreme care when creating or deleting network access rules.

Linksys RV802 - Defining a Custom Rule

Figure 8: Defining a Custom Rule

The router has a few default rules in place when you first set it up. You won't actually see these rules when you view the firewall tab, but they are there:

  • All traffic from the LAN to the WAN is allowed.
  • All traffic from the WAN to the LAN is denied.
  • All traffic from the LAN to the DMZ is allowed.
  • All traffic from the DMZ to the LAN is denied.
  • All traffic from the WAN to the DMZ is allowed.
  • All traffic from the DMZ to the WAN is allowed.

Custom rules that are created override the default rules shown above, but there are four additional default rules that will be always active, and custom rules will never override these four rules:

  • HTTP service from LAN side to RV082 is always allowed. (That way you don't accidentally cut off the ability to manage the router.)
  • DHCP service from LAN side is always allowed. (This only applies if you have DHCP turned on. You can disable DHCP and it will still be allowed, it just won't be on.)
  • DNS service from LAN side is always allowed. (Because if you turn it off, its really hard to get to sites like www.tomsnetworking.com.)
  • Ping service from LAN side to RV082 is always allowed. (Ping is useful for diagnosing network problems.)

Besides the default rules, all configured network access rules are listed in the table, and the rules are order dependent, so a rule that sits above another rule gets executed first. When the firewall has checked all the rules, the default rules apply as rules of last resort.

Something rare for a firewall in this price point is the ability to create custom services (Figure 9). Standard services are pre-defined, such as HTTP on port 80, FTP on ports 20 and 21. These can be selected from a drop down box. But if you have something that is not on the list, you can create it yourself, such as adding a rule for MySQL traffic, which uses port 3306. It is not on the drop down list, but you can add a custom service by specifying the port.

Linksys RV802 - Defining a Custom Service

Figure 9: Defining a Custom Service

Additionally, firewall rules can be set to be active only during certain times of the day or on certain days of the week (Figure 10). This allows you to restrict access to and from your network by specific protocols or sites during the time periods these rules are active, such as blocking the ports used by P2P from 8-6 Monday - Friday, but not on weekends.

Linksys RV802 - Firewall rule scheduler
Figure 10: Firewall rule scheduler



Tags: Linksys, Router reviews, VPN,

Related Articles:

Slideshow - Linksys RVS4000
Linksys RV042 Review: Solid Dual WAN, VPN Performer
Slideshow: Netgear FVS336G ProSafe Dual WAN Gigabit Firewall
Netgear FVS124G Review: Dual WAN, Gigabit LAN, 25 VPN tunnels
Netgear FVS114: IPsec routing on the cheap
 

Most Read

 
 

Over At The Forums

D-Link DNS-323 Mysteries
Hello folks. I'm having issues with my Nas and looking for some thoughts. 1. The 323 gets recognised by Vista as a network device but...

Gigabit Network Help!
I have a gigabit NAS (D-link 323) that I have connected to a D-Link DGS-1005D gigabit switch. I then have my desktop connected to...

Synology DS-209+ review up!!
Looks real good. Now Netgear needs to play catchup and dump that old Infrant CPU for something more modern and powerful!! http://www.trustedreviews.com/networ...ion-DS-209-/p1

Real world NAS vs XP performance
I'm interested in a NAS like the Qnap TS 509 to store a lot of photo image files. We currently use a Windows XP SP3...

FCC OET Filings--November
For a device to utilize the radio spectrum in the United States, the FCC requires hardware manufacturers to apply for the relevant license. These publically-accessible...

Slideshows

NETGEAR ReadyNAS Pro Western Digital ShareSpace QNAP TS-509 Pro D-Link DNS-343 4-Bay Network Storage Enclosure Thecus N3200 RAID 5 NAS D-Link DIR-628 RangeBooster N Dual Band Router More

Win This!

Enter to Win!

You could win a Trendnet TEW-633GR Wireless N Gigabit Router and two TEW-621PC 300Mbps Wireless N-Draft PC Cards

Learn How!

 

Ldr:0.00182700157166, Rct:0.0196080207825, Sky:0.0233640670776, Tlink:0.123521089554, TopPG:0.123593091965, GQV:0.123720169067 seconds to load.