Deployment Guide

HP Velocity Server Side Deployment Guide 62
Using the Management Application Configuration
Whitelist IP filter
The whitelist IP filter is evaluated after the blacklist IP filter. It applies only to IP addresses that
are not matched in the blacklist IP filter. The whitelist IP filter allows administrators to specify a
list of destination IP addresses where the data flows will be protected by HP Velocity.
The whitelist filter is exclusive. If a whitelist filter is specified, only the data flows meeting the
following criteria will be protected by HP Velocity:
The destination IP address for the data flow is not specified in the blacklist IP filter.
The destination IP address for the data flow is specified in the whitelist IP filter.
All other data flows not meeting these criteria will be passed through transparently.
Administrators can further filter the whitelist using the blacklist IP filter and/or the whitelist port
filter as follows:
Use a whitelist to specify a subnet of IP addresses that will be protected by HP Velocity and
use a blacklist to specify the destination IP addresses within the whitelisted subnet whose
data flows will not be HP Velocity protected. For more information, see “Blacklist IP filter” on
page 61.
Use the whitelist port filter also to specify a list of destination ports where the data flows will
be protected by HP Velocity. For example, to protect a data flow destined for port 1750, add
port 1750 to the whitelist port filter. HP Velocity will then protect only the data flows that
meet the following criteria:
The destination IP address for the data flow is not specified in the blacklist IP filter.
The destination IP address for the data flow is specified in the whitelist IP filter.
The destination port for the data flow is specified in the whitelist port filter.
Port filters
Port filters allow administrators to filter data flows that pass through the blacklist and whitelist
IP filters by destination port. These filters specify whether or not the data flows should be
protected or require special handling by HP Velocity. Separate filters are provided for TCP and
UDP ports.
The port filters are:
Whitelist port filter
Transparent port filter
Special port filter