4-19
Cisco ONS 15454 SDH Installation and Operations Guide, R3.3
May 2002
Chapter 4 IP Networking
Scenario 8: Provisioning the ONS 15454 SDH Proxy Server
Figure 4-16 Scenario 8: ONS 15454 SDH Proxy Server with ENEs on multiple rings
Table 4-5 shows the rules the ONS 15454 SDH follows to filter packets when Enable Firewall is enabled.
If the packet is addressed to the ONS 15454 SDH, additional rules, shown in Table 4-6, are applied.
Rejected packets are silently discarded.
Remote CTC
10.10.20.10
10.10.20.0/24
10.10.10.0/24
Interface 0/0
10.10.20.1
Router A
Interface 0/1
10.10.10.1
ONS 15454 SDH
Gateway NE
10.10.10.100/24
ONS 15454 SDH
External NE
192.168.10.250/24
ONS 15454 SDH
External NE
192.168.10.150/24
ONS 15454 SDH
External NE
192.168.10.200/24
Ethernet
SDH
ONS 15454 SDH
Gateway NE
10.10.10.200/24
ONS 15454 SDH
External NE
192.168.80.250/24
ONS 15454 SDH
External NE
192.168.60.150/24
ONS 15454 SDH
External NE
192.168.70.200/24
78238
Table 4-5 Proxy Server Firewall Filtering Rules
Packets Arrive At Accepted
TCC-I Ethernet
Interface
• The ONS 15454 SDH itself
• The ONS 15454 SDH’s subnet broadcast address
• Within the 224.0.0.0/8 network (reserved network used for standard multicast
messages)
• 255.255.255.255
DCC Interface
• The ONS 15454 SDH itself
• An OSPF peer (another DCC-connected ONS 15454 SDH)
• Within the 224.0.0.0/8 network
Comments to this Manuals