User's Manual
14. Security
Version 4.4.0
255
MP26x/MP27x
You can choose from among three pre-defined security levels for the device: Minimum,
Typical, and Maximum (the default setting). The table below summarizes the behavior of
the device for each of the three security levels.
Table
14-1: Behavior for the Three Security Levels
Security Level
Requests Originating
in the WAN
(Incoming Traffic)
Requests
Originating
in the LAN
(Outgoing Traffic)
Maximum
Security
(Default)
Blocked: No access to home network
from Internet, except as configured in
the Local Servers, DMZ host and
Remote Access screens
Limited: Only commonly- used services,
such as Web- browsing and e-mail, are
permitted
Typical Security
Blocked: No access to home network
from Internet, except as configured in
the Local Servers, DMZ host and
Remote Access screens
Unrestricted: All services are permitted,
except as configured in the Access
Control screen
Minimum
Security
Unrestricted: Permits full access from
Internet to home network; all connection
attempts permitted.
Unrestricted: All services are permitted,
except as configured in the Access
Control screen
These services include Telnet, FTP, HTTP, HTTPS, DNS, IMAP, POP3 and SMTP.
The list of allowed services at 'Maximum Security' mode can be edited in the screen's
'Access Control on page
Some applications (such as some Internet messengers and Peer-To-Peer client
applications) tend to use these ports if they cannot connect with their own default ports.
When applying this behavior, these applications are not blocked outbound, even at
Maximum Security Level.
To configure the device's security settings:
(See the figure 'General Security Level Settings' on page
)
1.
Choose from among the three predefined security levels described in the table above.
'Maximum Security' is the default setting.
Using the Minimum Security setting may expose the home network to
significant security risks, and thus should only be used, when necessary, for
short periods of time.
2.
Check the 'Block IP Fragments' check box to protect your home network from a
common type of hacker attack that could make use of fragmented data packets to
sabotage your home network. Note that some UDP-based services make legitimate
use of IP fragments. You need to allow IP fragments to pass into the home network to
make use of these select services.
3.
In the 'TCP Session timeout' field, enter the time-to-live (TTL) in units of seconds for
TCP sessions. The valid range is 1 to 3600 hours (default is an hour).
4.
Click
OK
to save the changes.
Summary of Contents for MP-26 series
Page 2: ......
Page 20: ...User s Manual 20 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 26: ...User s Manual 26 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 28: ...User s Manual 28 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 42: ...Reader s Notes...
Page 68: ...User s Manual 68 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 280: ...User s Manual 280 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 340: ...User s Manual 340 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 386: ...User s Manual 386 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 388: ...Reader s Notes...
Page 390: ...User s Manual 390 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 392: ...User s Manual 392 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 420: ...User s Manual 420 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 430: ...User s Manual 430 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 442: ...User s Manual 442 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 448: ...User s Manual 448 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 450: ...User s Manual 450 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...
Page 451: ...Part III Appendices...
Page 452: ...Reader s Notes...
Page 458: ...User s Manual 458 Document LTRT 23510 MP 26x MP 27x Multimedia Home Gateway Reader s Notes...