![Motorola Netopia 7000 Скачать руководство пользователя страница 154](http://html.mh-extra.com/html/motorola/netopia-7000/netopia-7000_administrators-handbook_243781154.webp)
Administrator’s Handbook
154
Link:
Stateful Inspection
All computer operating systems are vulnerable to attack from outside sources, typically at the operating
system or Internet Protocol (IP) layers. Stateful Inspection firewalls intercept and analyze incoming data
packets to determine whether they should be admitted to your private LAN, based on multiple criteria, or
blocked. Stateful inspection improves security by tracking data packets over a period of time, examining
incoming and outgoing packets. Outgoing packets that request specific types of incoming packets are
tracked; only those incoming packets constituting a proper response are allowed through the firewall.
Stateful inspection is a security feature that prevents unsolicited inbound access when NAT is disabled. You
can configure UDP and TCP “no-activity” periods that will also apply to NAT time-outs if stateful inspection is
enabled on the inter face. Stateful Inspection parameters are active on a WAN inter face only if enabled on
your Gateway. Stateful inspection can be enabled on a WAN inter face whether NAT is enabled or not.
Stateful Inspection Firewall installation procedure
☛
NOTE:
Installing Stateful Inspection Firewall is mandator y to comply with Required Ser vices Security
Policy - Residential Categor y module - Version 4.1 (specified by ICSA Labs)
For more information please go to the following URL:
http://www.icsalabs.com/icsa/docs/html/communities/firewalls/pdf/4.1/baseline.pdf
1.
Access the router through the web interface from the private LAN.
DHCP ser ver is enabled on the LAN by default.
2.
The Gateway’s Stateful Inspection feature must be enabled in order to prevent TCP,
UDP and ICMP packets destined for the router or the private hosts.
This can be done by navigating to
Expert Mode
->
Security
->
Stateful Inspection
.
•
UDP no-activity time-out
: The time in seconds after which a UDP session will be terminated, if there is
no traffic on the session.
•
TCP no-activity time-out
: The time in seconds after which an TCP session will be terminated, if there
is no traffic on the session.
Содержание Netopia 7000
Страница 18: ...Administrator s Handbook 18 ...
Страница 115: ...115 The screen expands to display the VLAN settings ...
Страница 123: ...123 The Home page for a VoIP enabled Gateway with both phone lines registered is shown below ...
Страница 192: ...Administrator s Handbook 192 ...
Страница 222: ...Administrator s Handbook 222 ...
Страница 324: ...Administrator s Handbook 324 set ip backup gateway default ip_address Specifies the ip address of the default gateway ...
Страница 342: ...Administrator s Handbook 342 ...
Страница 366: ...Administrator s Handbook 366 Z Zero Touch 301 ...
Страница 367: ...367 Motorola Netopia 2200 3300 or 7000 series Motorola Inc 6001 Shellmound Street Emeryville CA 94608 August 2 2007 ...
Страница 368: ...Administrator s Handbook 368 ...