H.323 ALG, 479
using IP policies, 480
with VoIP profile, 480
HA (see high availability)
HA Failover Time setting, 840
hardware
fault troubleshooting, 133
monitoring, 107
monitoring message frequency, 98, 109
heartbeats (see high availability)
high availability, 820
advanced settings, 840
ALG support, 426, 834
and accounting, 663
and high buffers setting, 833
automatic synchronization, 821, 832
both units going active, 823, 836
changing HA management IPs, 39
cluster ID, 835
cluster interconnections, 821
disabling heartbeat sending, 823
forcing resynchronization, 825
hardware setup, 827
heartbeats, 823
IP4 HA Address objects, 827, 830, 831
IP6 HA Address objects, 162, 831
issues, 834
L2TPv3 not supported, 741
link monitor usage, 839
making OSPF work, 835
manual setup, 831
mechanisms, 823
promiscuous mode, 184, 824
setting up, 827
set unique management IPs, 828
slave becomes master, 831
swapping out the master, 830
sync interface failure, 825
transparent mode unsupported, 834
transparent not unsupported, 379
unique shared MAC, 833
unused interface problem, 823, 836
upgrading NetDefendOS, 837
VPN tunnel synchronization, 834
with IDP and anti-virus, 824
with IPv6, 162
with link monitoring, 105
with transparent mode, 384
wizard setup, 829
High Buffers setting, 875
checking after upgrades, 875
with high availability, 833
host monitoring, 297
for route failover, 299
setting source IP, 300
HTML pages
content filtering customizing, 521
web auth customizing, 635
HTTP
ALG, 427
allow unknown protocols, 430
authentication, 627
SafeSearch enforcement, 428
URL verification, 428
whitelist precedence, 430
HTTP poster, 282
HTTPS Certificate setting, 71
HTTP URI normalization in IDP, 555
I
ICMP ping (see ping CLI command)
ICMP Sends Per Sec Limit setting, 859
ICMP Unreachable message, 234
IDENT and IP rules, 234
identity awareness agent (IDA), 644
event IDs listened for, 645
ID lists, 273, 686, 697
IDP, 552
associating signatures with rules, 554
best practice deployment, 564
blacklisting, 559
HTTP URI normalization, 555
insertion/evasion attacks, 556
rules, 554
signature group list, 884
signature groups, 558
signatures, 557
signature wildcarding, 559
SMTP log receivers, 562
subscription expiry behavior, 882
subscriptions, 553
traffic shaping, 562, 798
using individual signatures, 562
with ZoneDefense, 554, 560
IfaceMon_BelowCPULoad setting, 190
IfaceMon_BelowIfaceLoad setting, 190
IfaceMon_e1000 setting, 190
IfaceMon_ErrorTime setting, 190
IfaceMon_MinInterval setting, 191
IfaceMon_RxErrorPerc setting, 191
IfaceMon_TxErrorPerc setting, 191
Iface poll interval setting, 301
IGMP, 361
advanced settings, 374
configuration, 368
rules configuration, 371
IGMP Before Rules setting, 374
IGMP Idle Lifetime setting, 862
IGMP Last Member Query Interval setting, 374
IGMP Lowest Compatible Version setting, 374
IGMP Max Interface Requests setting, 375
IGMP Max Total Requests setting, 375
IGMP Query Interval setting, 375
IGMP Query Response Interval setting, 375
IGMP React To Own Queries setting, 374
IGMP Robustness Variable setting, 375
IGMP Router Version setting, 374
IGMP Startup Query Count setting, 375
IGMP Startup Query Interval setting, 375
IGMP Unsolicitated Report Interval setting, 375
IKE, 683
algorithm proposals, 684
Enabling IKEv1/IKEv2, 713
encapsulation mode with IKEv2, 736
lifetimes, 684
negotiation, 684
IKE CRL Validity Time setting, 724
IKE Max CA Path setting, 724
IKE Send CRLs setting, 724
IKE Send Initial Contact setting, 724
ike -snoop CLI command, 764
Illegal Fragments setting, 867
Include Framed IP setting, 725
Initial Silence (HA) setting, 840
insertion attack prevention, 556
Alphabetical Index
905
Содержание NetDefendOS
Страница 30: ...Figure 1 3 Packet Flow Schematic Part III Chapter 1 NetDefendOS Overview 30 ...
Страница 32: ...Chapter 1 NetDefendOS Overview 32 ...
Страница 144: ...Chapter 2 Management and Maintenance 144 ...
Страница 220: ... Enable DHCP passthrough Enable L2 passthrough for non IP protocols 4 Click OK Chapter 3 Fundamentals 220 ...
Страница 267: ... SourceNetwork lannet DestinationInterface any DestinationNetwork all nets 4 Click OK Chapter 3 Fundamentals 267 ...
Страница 284: ...Chapter 3 Fundamentals 284 ...
Страница 360: ...The ospf command options are fully described in the separate NetDefendOS CLI Reference Guide Chapter 4 Routing 360 ...
Страница 392: ...Chapter 4 Routing 392 ...
Страница 396: ...Web Interface 1 Go to Network Ethernet If1 2 Select Enable DHCP 3 Click OK Chapter 5 DHCP Services 396 ...
Страница 419: ... Host 2001 DB8 1 MAC 00 90 12 13 14 15 5 Click OK Chapter 5 DHCP Services 419 ...
Страница 420: ...Chapter 5 DHCP Services 420 ...
Страница 424: ...2 Now enter Name lan_Access Action Expect Interface lan Network lannet 3 Click OK Chapter 6 Security Mechanisms 424 ...
Страница 573: ...Chapter 6 Security Mechanisms 573 ...
Страница 575: ...This section describes and provides examples of configuring NAT and SAT rules Chapter 7 Address Translation 575 ...
Страница 607: ...Chapter 7 Address Translation 607 ...
Страница 666: ...Chapter 8 User Authentication 666 ...
Страница 775: ...Chapter 9 VPN 775 ...
Страница 819: ...Chapter 10 Traffic Management 819 ...
Страница 842: ...Chapter 11 High Availability 842 ...
Страница 866: ...Default Enabled Chapter 13 Advanced Settings 866 ...
Страница 879: ...Chapter 13 Advanced Settings 879 ...