The subnetBlocker scripts have to be downloaded and stored to any sub-directory on the Lotus Sametime Unified Telephony.
Administrator rights are necessary.
The Subnet information should be collected during normal operation in preparation for an overload condition.
As using the tool blocks all protocols be careful not to block a subnet with RG8700/RG2700/media-server or any other PSTN gateway as this may have unexpected implications such as no longer being able to administer the SNMP based RGs from a server with integrated CMP.
- <Navigate> to directory containing the scripts.
- perform a dos2linux on the scripts to remove any dos characters introduced by the copy.
- make the scripts executable on the Lotus Sametime Unified Telephony by typing chmod +x firewall*
- To use the shell script make sure that you know which subnets you wish to block all IP traffic from. Then type firewall a.b.c.d/netmask deny or permit
To highlight the usage, the most common commands are shown below:
For each subnet on your blocking list, type: , e.g. ./firewall 10.10.10.0/24 denyParent topic: Subnet Blocker Procedure
To allow traffic from that subnet again, type: e.g. ./firewall 10.10.10.0/24 permit
To list the subnets currently being blocked, enter: ./firewall -L