× NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Orbi WiFi 7 RBE973

Reflex filters

hacesoft
Tutor

Reflex filters

hi,
I want to ask: umi Gigabit Ethernet Smart Switch GS724Tv4 ProSafe, 24 ports, 6.3.1.34 reflex filters?

 

 

Thank you for answer.

Model: GS724Tv4|ProSafe 24 ports Gigabit Smart switch
Message 1 of 5

Accepted Solutions
schumaku
Guru

Re: Reflex filters

@DaneA 

Reflexive ACL's are available on fvery few platforms only, e.g. Cisco IOS, but not on Cisco NX-OS (on switches worth then thousands of USD!!! Was told it's a hardware limitation - so you see the importance). Huawei might have something similar on their managed switches.

 

Definitivley not a feature available on the level of Smart Managed Pro (Web managed) switches.

View solution in original post

Message 5 of 5

All Replies
DaneA
NETGEAR Employee Retired

Re: Reflex filters

@hacesoft,

 

I want to ask: umi Gigabit Ethernet Smart Switch GS724Tv4 ProSafe, 24 ports, 6.3.1.34 reflex filters?

What do you mean by "reflex filters" that you are referring to?  Unable to find "reflex filters" in the GS724Tv4 user manual here

 

 

Regards,

 

DaneA

NETGEAR Community Team

Message 2 of 5
hacesoft
Tutor

Re: Reflex filters

hi,

Reflective filter filters outgoing data packets. If it intercepts a packet that initiates a new session,
then, in the opposite direction, it generates a temporary filter item that allows the same packets to pass through
session in the opposite direction. The temporary filter entry retrieves its parameters from the outgoing packet:

 

- The higher layer protocol is the same as the outgoing packet.
- The sender's and recipient's IP addresses are switched in the temporary filter entry because of an incoming packet
will have these items switched.
- The sender and receiver ports are also swapped. (Ports only apply to packets carrying
TCP or UDP.)

 

The temporary item is maintained for the duration of the session. For TCP, it is maintained for 5 seconds
after passing the second flagged FIN packet or terminating after passing the flagged packet
RST (reject connection). This tactic can only be applied to TCP that establishes a connection.
Generally, the "timeout" keyword is used to set the interval after which the timeout period is set
deletes the temporary filter entry if the session has been idle for that time.

Message 3 of 5
DaneA
NETGEAR Employee Retired

Re: Reflex filters

@hacesoft,

 

Thank you for your feedback. 

 

Is there a specific RFC to the "reflex filters" you are referring to?  If yes, kindly provide the RFC.  

 

 

Regards,

 

DaneA

NETGEAR Community Team

Message 4 of 5
schumaku
Guru

Re: Reflex filters

@DaneA 

Reflexive ACL's are available on fvery few platforms only, e.g. Cisco IOS, but not on Cisco NX-OS (on switches worth then thousands of USD!!! Was told it's a hardware limitation - so you see the importance). Huawei might have something similar on their managed switches.

 

Definitivley not a feature available on the level of Smart Managed Pro (Web managed) switches.

Message 5 of 5
Top Contributors
Discussion stats
  • 4 replies
  • 1117 views
  • 0 kudos
  • 3 in conversation
Announcements