CSX200 Firmware SupportCSX200 Installation Guide2-11The CSX200 uses the Spanning Tree Algorithm to prevent data loops and duplicate data. This is aself-learning bridge, i.e., the bridge builds and updates an address table with each MAC sourceaddress and associated information when the packets are received.IP Routing — IP routing support provides the ability to process TCP/IP frames at the networklayer for routing. IP routing support includes the Routing Information Protocol (RIP) that allowsthe exchange of routing information on a TCP/IP network. The CSX200 receives and rebroadcastsRIP messages to and from adjacent routers and workstations.IPX Routing — Internet Packet Exchange (IPX) routing support provides the ability to processNovell proprietary frames at the network layer for routing. IPX routing support includes bothRouting Information Protocol (RIP), and Service Advertising Protocol (SAP). These protocolsallow the exchange of routing information on a Novell NetWare network. The SAP protocolprovides a means for routers and workstations to advertise their class of services (file, print, etc.) toadjacent routers and workstations.Bridging and Routing Protocol FilteringFiltering is used to allow efficient usage of network resources and provide security for yournetwork and hosts.IP Internet Firewall — The CSX200 supports IP Internet Firewall filtering to preventunauthorized access to your system and network resources from the Internet or a corporateIntranet. Security can be configured to permit or deny IP traffic. The security is established byconfiguring IP access filters, which are based on source IP address, source mask, destination IPaddress, destination mask, protocol type, and application port identifiers for both TransmissionControl Protocol (TCP) and User Datagram Protocol (UDP).IP access filters allow individual IP source and destination pair filtering as well as IP addressranges and wild carding to match any IP address. Firewall filters can be defined to allow inboundonly, outbound only, or bi-directional IP communication up to the UDP and TCP application portlevel. The CSX200 supports the IP Access Control (from the ctip-mib) Internet Firewall Filter.Bridge Filtering — Bridge filtering lets a network administrator control the flow of packetsacross the CSX200. Bridge filtering is used to “deny” or “allow” packets based on a “matchedpattern” using a specified position and hexadecimal content within the packet. This enablesrestricting or forwarding of messages based on address, protocol, or data content. Common usesinclude preventing access to remote networks, controlling unauthorized access to the localnetwork, and limiting unnecessary traffic.