51
Chapter 5: Setting Up and Configuring the Router
Firewall Tab - General
4-Port SSL/IPSec VPN Router
Firewall Tab - General
On the
General
screen, you can enable or disable a variety of firewall, security, and web features.
General
Firewall. The firewall is enabled by default. If you disable it, then the SPI, DoS, and Block WAN Request features,
Access Rules, and Content Filters will also be disabled, and the Remote Management feature will be enabled.
SPI (Stateful Packet Inspection). The SPI feature is enabled by default. The Router's firewall uses Stateful Packet
Inspection to review the information that passes through the firewall. It will inspect all packets based on the
established connection, prior to passing the packets for processing through a higher protocol layer.
DoS (Denial of Service). The DoS feature is enabled by default. It protects internal networks from Internet attacks,
such as SYN Flooding, Smurf, LAND, Ping of Death, IP Spoofing, and reassembly attacks.
Block WAN Request. This feature is enabled by default. Using this feature, the Router drops both unaccepted TCP
request and ICMP packets from the WAN side. Hackers will not find the Router by pinging the WAN IP address.
Remote Management. This feature is disabled by default. If you want to use SSL or manage this Router through a
WAN connection, first change the password on the
Setup - Password
screen (this prevents any user from
accessing the Router or using SSL with the default password). Then click
Enable
for the Remote Management
feature, and select the port number you want to use for remote management (port 80 or 8080 is usually used).
Restrict WEB Features
Java. Java is a programming language for websites. If you deny Java applets, you run the risk of losing access to
Internet sites created using this programming language. To block Java applets, click the checkbox.
Cookies. A cookie is data stored on your PC and used by Internet sites when you interact with them. To block
cookies, click the checkbox.
ActiveX. ActiveX is a programming language for websites. If you deny ActiveX, you run the risk of losing access to
Internet sites created using this programming language. To block ActiveX, click the checkbox.
Access to HTTP Proxy Servers. Use of WAN proxy servers may compromise the Router's security. If you block
access to HTTP proxy servers, then you block access to WAN proxy servers. To block access, click the checkbox.
To keep trusted sites unblocked, click
Don’t Block Java/ActiveX/Cookies/Proxy To Trusted Domains
.
Click the
Save Settings
button to save your changes, or click the
Cancel Changes
button to undo your changes.
Figure 5-48: Firewall Tab - General
Содержание RVL200
Страница 170: ...157 Appendix Q Regulatory Information 4 Port SSL IPSec VPN Router ...
Страница 171: ...158 Appendix Q Regulatory Information 4 Port SSL IPSec VPN Router ...
Страница 172: ...159 Appendix Q Regulatory Information 4 Port SSL IPSec VPN Router ...
Страница 173: ...160 Appendix Q Regulatory Information 4 Port SSL IPSec VPN Router For more information visit www linksys com ...