Chapter 12 Firewall
P-2304R-P1 Series User’s Guide
138
The ZyXEL Device has one Ethernet WAN port and four Ethernet LAN ports, which are used
to physically separate the network into two areas.The WAN (Wide Area Network) port
attaches to the broadband (cable or DSL) modem to the Internet.
The LAN (Local Area Network) port attaches to a network of computers, which needs security
from the outside world. These computers will have access to Internet services such as e-mail,
FTP and the World Wide Web. However, "inbound access" is not allowed (by default) unless
the remote host is authorized to use a specific service.
12.1.3 Guidelines For Enhancing Security With Your Firewall
1
Change the default password via web configurator.
2
Think about access control before you connect to the network in any way, including
attaching a modem to the port.
3
Limit who can access your router.
4
Don't enable any local service (such as telnet or FTP) that you don't use. Any enabled
service could present a potential security risk. A determined hacker might be able to find
creative ways to misuse the enabled services to access the firewall or the network.
5
For local services that are enabled, protect against misuse. Protect by configuring the
services to communicate only with specific peers, and protect by configuring rules to
block packets for the services at specific interfaces.
6
Protect against IP spoofing by making sure the firewall is active.
7
Keep the firewall in a secured (locked) room.
12.1.4 The Firewall, NAT and Remote Management
Figure 68
Firewall Rule Directions
12.1.4.1 LAN-to-WAN rules
LAN-to-WAN
rules are local network to Internet firewall rules. The default is to forward all
traffic from your local network to the Internet.
You can block certain
LAN-to-WAN
traffic in the
Services
screen (click the
Services
tab).
All services displayed in the
Blocked Services
list box are
LAN-to-WAN
firewall rules that
block those services originating from the LAN.
Содержание P-2304R
Страница 1: ...www zyxel com P 2304R P1 Series VoIP Station Gateway User s Guide Version 3 60 10 2006 Edition 1...
Страница 2: ......
Страница 8: ...Contents Overview P 2304R P1 Series User s Guide 8...
Страница 26: ...26...
Страница 32: ...Chapter 1 Introducing the ZyXEL Device P 2304R P1 Series User s Guide 32...
Страница 40: ...Chapter 2 Introducing the Web Configurator P 2304R P1 Series User s Guide 40...
Страница 73: ...73 PART II Network WAN 75 LAN 85 NAT 97...
Страница 74: ...74...
Страница 105: ...105 PART III VoIP SIP 107 Phone 121 Phone Book 129...
Страница 106: ...106...
Страница 116: ...Chapter 9 SIP P 2304R P1 Series User s Guide 116 Figure 60 VoIP SIP SIP Settings Advanced...
Страница 128: ...Chapter 10 Phone P 2304R P1 Series User s Guide 128...
Страница 134: ...Chapter 11 Phone Book P 2304R P1 Series User s Guide 134...
Страница 135: ...135 PART IV Security and Management Firewall 137 Content Filter 145 Static Route 149 Bandwidth MGMT 153 Remote MGMT 165...
Страница 136: ...136...
Страница 144: ...Chapter 12 Firewall P 2304R P1 Series User s Guide 144...
Страница 148: ...Chapter 13 Content Filter P 2304R P1 Series User s Guide 148...
Страница 152: ...Chapter 14 Static Route P 2304R P1 Series User s Guide 152...
Страница 173: ...173 PART V Maintenance and Troubleshooting UPnP 175 System 187 Logs 195 Tools 209 Troubleshooting 215...
Страница 174: ...174...
Страница 186: ...Chapter 17 UPnP P 2304R P1 Series User s Guide 186...
Страница 194: ...Chapter 18 System P 2304R P1 Series User s Guide 194...
Страница 208: ...Chapter 19 Logs P 2304R P1 Series User s Guide 208...
Страница 220: ...Chapter 21 Troubleshooting P 2304R P1 Series User s Guide 220...
Страница 222: ...222...
Страница 228: ...Appendix A Product Specifications P 2304R P1 Series User s Guide 228...
Страница 258: ...Appendix E SIP Passthrough P 2304R P1 Series User s Guide 258...
Страница 290: ...Appendix I Legal Information P 2304R P1 Series User s Guide 290...