206
Defining your security environment
Controlling full application inspection of traffic
■
“Service Group Properties—General tab”
■
■
“H.323 Alias Properties—General tab”
Configuring additional H.323 features
You can modify the security gateway’s ability to handle and process H.323 traffic to suit your specific
needs. This section presents an overview of the additional H.323 capabilities the security gateway
supports, and the specific steps needed to configure those capabilities.
■
“Changing the default ports on which the H.323 proxy listens”
■
“Enabling support for loose interface connections”
■
“Modifying the timeout period to keep inactive H.323 connections open”
■
■
Changing the default ports on which the H.323 proxy listens
By default, the H.323 proxy listens on port 1720 and uses high level ports between 20000 and 30000 for
additional traffic. You can use the procedure in this section to change the default ports on which the
H.323 proxy listens. Any changes you make take affect immediately after saving and activating the
configuration.
Prerequisites
Complete the following task before beginning this procedure.
■
“Configuring access for Internet-based communications”
To change the default ports on which the H.323 proxy listens
1
In the SGMI, in the left pane, under Assets, click
Proxies
.
2
In the right pane, on the Proxies tab, click the H.323 proxy, and then click
Properties
.
3
In the Proxy Properties dialog box, on the Ports tab, in the Port text box, type the port number.
4
Click
OK
.
5
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
None.
Enabling support for loose interface connections
Loose security lets users supply the host name, or IP address, of the callee without requiring a
successful lookup. By default, leaving this option unchecked maintains the default of a strict security
policy, which only permits inbound connections if the H.323 alias file contains the callee alias name
and corresponding target host name.
Prerequisites
Complete the following task before beginning this procedure.
■
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...