
725
Field descriptions
Assets field descriptions
Source port use
Type of source port used by the protocol.
Select one of the following:
■
Single Port
Lets you specify a Source low port only.
■
Port Range
Use a port range if the application for which you are creating this protocol requires
that more than one port be open to function correctly.
Source low port
Source low port.
The type of source port use that you selected dictates the use of this field:
■
When using a port range, this is the port number at the lower end of the range of
source ports.
■
When using a single port, this port is used as the source port.
The source low port can be any number between 0 and 65535.
Specifying zero (0) means that any port can be used. The value 1024 is the default for
this option.
Source high port
Source high port.
The type of source port that you selected dictates the use of this field:
■
When using a port range, this is the port number at the upper end of the range of
the protocol’s source ports.
■
When using a single port, this field is unavailable.
The source high port can be any number between 0 and 65535.
Specifying zero (0) means any port can be used. The value 65535 is the default for this
option.
Use GSP
Indicates whether this option is enabled
.
Check this option to enable the custom protocol to use the GSP proxy since custom
protocols are not supported by the system proxies.
This option is checked by default.
Use native service
Enables the native service property of the GSP.
This option is unchecked by default, except for the SSH and SGMI protocols.
Enabling the native service property for a GSP lets it coexist with a local service on the
security gateway which listens on the same port as the GSP destination port. For
example, you may want to pass traffic to a destination port such as 2456 or 423, but
these ports are in use by the security gateway management processes.
Note:
Native service coexistence is used only for conflicts with port assignments of local
services. You do not use it to handle conflicts with other pass-through proxies, such as
httpd, smtpd or other GSPs.
Native service port
Port on which the native service listens.
If native service coexistence is required, you must supply an additional port number
that can be used internally by the security gateway to keep the GSP operation from
interfering with the other service.
Internally, the security gateway modifies the incoming packet to use the alternative
port, if the packet destination address is non-local. The intended port is restored before
the packet leaves the security gateway.
Table D-201
TCP UDP Based Protocol Properties—General tab (Continued)
Field
Description
Содержание Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Страница 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Страница 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Страница 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Страница 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Страница 319: ...318 Controlling traffic at the security gateway Blocking inappropriate content with content filtering...
Страница 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Страница 409: ...408 Providing remote access using VPN tunnels Multicast traffic through gateway to gateway IPsec tunnels...
Страница 509: ...508 Generating reports Upgrade reports...
Страница 553: ...552 Advanced system settings Configuring advanced options...
Страница 557: ...556 SSL server certificate management Installing a signed certificate...
Страница 861: ...860 Index...