Page 74 SonicWALL TELE3 SP Administrator’s Guide
If you want to define the destination IP addresses that are affected by the rule, for
example, to allow inbound Web access to several Web servers on your LAN, enter the
starting IP addresses of the address range in the
Addr Range Begin
field and the ending
IP address in the
Addr Range End
field. To include all IP addresses, enter * in the
Addr
Range Begin
field.
6. Select
always
from the
Apply this rule
menu
if the rule is always in effect.
Select
from
the
Apply this rule
to define the specific time and day of week to enforce the
rule. Enter the time of day (in 24-hour format) to begin and end enforcement. Then select
the day of week to begin and end enforcement.
Note
: If you want to enable the rule at different times depending on the day of the week,
you have to make additional rules for each time period.
7. If you would like for the rule to timeout after a period of inactivity, set the amount of time,
in minutes, in the
Inactivity Timeout in Minutes
field. The default value is 5 minutes.
8. Do not select the
Allow Fragmented Packets
check box. Large IP packets are often
divided into fragments before they are routed over the Internet and then reassembled at
a destination host. Because hackers exploit IP fragmentation in Denial of Service attacks,
the SonicWALL blocks fragmented packets by default. You can override the default
configuration to allow fragmented packets over PPTP or IPSec.
9. Enable
Bandwidth Management
, and enter the
Guaranteed Bandwidth
in
Kpbs
.
10. Enter the maximum amount of bandwidth available to the
Rule
at any time in the
Maximum Bandwidth
field. Assign a priority from 0 (highest) to 7 (lowest).
11. Click
Update
. Once the SonicWALL has been updated, the new rule appears in the list of
Current Network Access Rules
.
Note
: Although custom rules can be created that allow inbound IP traffic, the SonicWALL
does not disable protection from Denial of Service attacks, such as the SYN Flood and Ping
of Death attacks.
For example, to configure the SonicWALL to allow Internet traffic to your Web server with an
IP address of 208.5.5.5 (
Standard
mode), create the following rule:
1. Verify that
HTTP
has been added as a
Service
as outlined previously.
Содержание TELE3 SP
Страница 1: ...SONICWALL The TELE3 SP Administrator s Guide...
Страница 204: ...Appendices Page 203 Notes...
Страница 205: ...Page 204 SonicWALL TELE3 SP Administrator s Guide...