Packet Filter Services
Reference Guide
49
NNTP
Network News Transfer Protocol (NNTP) is used to transmit Usenet news
articles.
The best way to use NNTP is to set internal hosts to internal news servers,
and external hosts to news feeds. In most cases NNTP has to be enabled in
both directions. If you are running a public newsfeed, you must allow
NNTP connections from all external hosts. External hosts can be spoofed;
WatchGuard cannot verify that these packets were actually sent from the
correct location.
Configure WatchGuard to add the source IP address to the Blocked Sites
List whenever an incoming NNTP connection is denied. All of the usual
logging options can be used with NNTP.
Characteristics
•
Protocol: TCP
•
Server Port(s): 119
•
Client Port(s): greater than 1023
•
RFC: 977
Common Scenarios
Scenario 1
Description
There exists a “public” NNTP server on the optional network.
Icons in the Services Arena
An NNTP icon–Incoming Allow From Any To the server.
Scenario 2
Description
There exists a “public” NNTP server on the Trusted network.
Icons in the Services Arena
The configuration will be the same as for Scenario 1.
Summary of Contents for Firebox X1000
Page 1: ...WatchGuard Firebox System Reference Guide WatchGuard Firebox System...
Page 12: ...xii WatchGuard Firebox System...
Page 22: ...CHAPTER 1 Internet Protocol Reference 10 WatchGuard Firebox System...
Page 38: ...CHAPTER 2 MIME Content Types 26 WatchGuard Firebox System...
Page 92: ...CHAPTER 5 Common Log Messages 80 WatchGuard Firebox System...
Page 118: ...CHAPTER 8 Firebox Read Only System Area 106 WatchGuard Firebox System...
Page 164: ...CHAPTER 9 Glossary 152 WatchGuard Firebox System...