Chapter 16 The Firewall Screens
User’s Guide
195
16.4.2 Guidelines For Enhancing Security With Your Firewall
1
Change the default password via web configurator.
2
Think about access control before you connect to the network in any way.
3
Limit who can access your router.
4
Don't enable any local service (such as telnet or FTP) that you don't use. Any
enabled service could present a potential security risk. A determined hacker might
be able to find creative ways to misuse the enabled services to access the firewall
or the network.
5
For local services that are enabled, protect against misuse. Protect by configuring
the services to communicate only with specific peers, and protect by configuring
rules to block packets for the services at specific interfaces.
6
Protect against IP spoofing by making sure the firewall is active.
7
Keep the firewall in a secured (locked) room.
16.4.3 The “Triangle Route” Problem
A traffic route is a path for sending or receiving data packets between two
Ethernet devices. You may have more than one connection to the Internet
(through one or more ISPs). If an alternate gateway is on the LAN (and its IP
address is in the same subnet as the WiMAX Modem’s LAN IP address), the
“triangle route” (also called asymmetrical route) problem may occur. The steps
below describe the “triangle route” problem.
1
A computer on the LAN initiates a connection by sending out a SYN packet to a
receiving server on the WAN.
2
The WiMAX Modem reroutes the SYN packet through Gateway A on the LAN to the
WAN.
3
The reply from the WAN goes directly to the computer on the LAN without going
through the WiMAX Modem.
Содержание MAX-306M1
Страница 2: ......
Страница 8: ...Safety Warnings User s Guide 8...
Страница 10: ...Contents Overview User s Guide 10...
Страница 24: ...List of Figures User s Guide 24...
Страница 30: ...30...
Страница 63: ...63 PART II Basic Screens The Main Screen 38 The Setup Screens 65...
Страница 64: ...64...
Страница 72: ...72...
Страница 84: ...Chapter 7 The LAN Configuration Screens User s Guide 84...
Страница 96: ...Chapter 8 The WAN Configuration Screens User s Guide 96...
Страница 108: ...Chapter 9 The VPN Transport Screens User s Guide 108...
Страница 118: ...Chapter 10 The NAT Configuration Screens User s Guide 118...
Страница 129: ...129 PART IV Voice Screens The Service Configuration Screens 131 The Phone Screens 149 The Phone Book Screens 159...
Страница 130: ...130...
Страница 148: ...Chapter 12 The Service Configuration Screens User s Guide 148...
Страница 158: ...Chapter 13 The Phone Screens User s Guide 158...
Страница 164: ...Chapter 14 The Phone Book Screens User s Guide 164...
Страница 166: ...166...
Страница 188: ...Chapter 15 The Certificates Screens User s Guide 188...
Страница 198: ...Chapter 16 The Firewall Screens User s Guide 198...
Страница 218: ...Chapter 19 QoS User s Guide 218...
Страница 234: ...Chapter 20 The Logs Screens User s Guide 234...
Страница 247: ...247 PART VI Troubleshooting and Specifications Troubleshooting 249 Product Specifications 257...
Страница 248: ...248...
Страница 256: ...Chapter 22 Troubleshooting User s Guide 256...
Страница 264: ...Chapter 23 Product Specifications User s Guide 264...
Страница 266: ...266...
Страница 298: ...Appendix B Setting Up Your Computer s IP Address User s Guide 298...
Страница 308: ...Appendix C Pop up Windows JavaScripts and Java Permissions User s Guide 308...
Страница 352: ...Appendix E Importing Certificates User s Guide 352...
Страница 354: ...Appendix F SIP Passthrough User s Guide 354...
Страница 370: ...Appendix I Customer Support User s Guide 370...
Страница 376: ...Index User s Guide 376...