Chapter 12 Firewall
P-2612HW Series User’s Guide
230
• Use the Threshold screen (
) to set the thresholds that
the ZyXEL Device uses to determine when to start dropping sessions that do not
become fully established (half-open sessions).
12.1.2 What You Need to Know About Firewall
DoS
Denials of Service (DoS) attacks are aimed at devices and networks with a
connection to the Internet. Their goal is not to steal information, but to disable a
device or network so users no longer have access to network resources. The
ZyXEL Device is pre-configured to automatically detect and thwart all known DoS
attacks.
Anti-Probing
If an outside user attempts to probe an unsupported port on your ZyXEL Device,
an ICMP response packet is automatically returned. This allows the outside user to
know the ZyXEL Device exists. The ZyXEL Device supports anti-probing, which
prevents the ICMP response packet from being sent. This keeps outsiders from
discovering your ZyXEL Device when unsupported ports are probed.
ICMP
Internet Control Message Protocol (ICMP) is a message control and error-reporting
protocol between a host server and a gateway to the Internet. ICMP uses Internet
Protocol (IP) datagrams, but the messages are processed by the TCP/IP software
and directly apparent to the application user.
DoS Thresholds
For DoS attacks, the ZyXEL Device uses thresholds to determine when to drop
sessions that do not become fully established. These thresholds apply globally to
all sessions. You can use the default threshold values, or you can change them to
values more suitable to your security requirements.
Finding Out More
• See
for an example of setting up a firewall.
• See
for advanced technical information on firewall.
12.1.3 Firewall Rule Setup Example
The following Internet firewall rule example allows a hypothetical “MyService”
connection from the Internet.
Содержание P-2612HW-F1 -
Страница 2: ......
Страница 8: ...Safety Warnings P 2612HW Series User s Guide 8...
Страница 10: ...Contents Overview P 2612HW Series User s Guide 10...
Страница 22: ...Table of Contents P 2612HW Series User s Guide 22...
Страница 24: ...24...
Страница 56: ...Chapter 3 Wizards P 2612HW Series User s Guide 56...
Страница 88: ...88...
Страница 120: ...Chapter 6 WAN Setup P 2612HW Series User s Guide 120...
Страница 136: ...Chapter 7 LAN Setup P 2612HW Series User s Guide 136...
Страница 168: ...Chapter 8 Wireless LAN P 2612HW Series User s Guide 168...
Страница 184: ...Chapter 9 Network Address Translation NAT P 2612HW Series User s Guide 184...
Страница 250: ...Chapter 12 Firewall P 2612HW Series User s Guide 250...
Страница 290: ...Chapter 14 VPN P 2612HW Series User s Guide 290...
Страница 320: ...Chapter 15 Certificates P 2612HW Series User s Guide 320...
Страница 324: ...Chapter 16 Static Route P 2612HW Series User s Guide 324...
Страница 356: ...Chapter 19 Dynamic DNS Setup P 2612HW Series User s Guide 356...
Страница 382: ...Chapter 21 Universal Plug and Play UPnP P 2612HW Series User s Guide 382...
Страница 384: ...384...
Страница 406: ...Chapter 23 Logs P 2612HW Series User s Guide 406...
Страница 458: ...458...
Страница 494: ...Appendix B Pop up Windows JavaScripts and Java Permissions P 2612HW Series User s Guide 494...
Страница 530: ...Appendix D Wireless LANs P 2612HW Series User s Guide 530...
Страница 547: ...Index P 2612HW Series User s Guide 547...