Chapter 9 Firewall Configuration
P-660H-Tx v2 User’s Guide
125
3
Is it possible to modify the rule to be more specific? For example, if IRC is blocked for
all users, will a rule that blocks just certain users be more effective?
4
Does a rule that allows Internet users access to resources on the LAN create a security
vulnerability? For example, if FTP ports (TCP 20, 21) are allowed from the Internet to
the LAN, Internet users may be able to connect to computers with running FTP servers.
5
Does this rule conflict with any existing rules?
6
Once these questions have been answered, adding rules is simply a matter of plugging
the information into the correct fields in the web configurator screens.
9.3.3 Key Fields For Configuring Rules
9.3.3.1 Action
Should the action be to
Drop
,
Reject
or
Permit
?
"
“Drop” means the firewall silently discards the packet. “Reject” means the
firewall discards packets and sends an ICMP destination-unreachable
message to the sender.
9.3.3.2 Service
Select the service from the
Service
scrolling list box. If the service is not listed, it is necessary
to first define it. See
Section 9.8 on page 137
for more information on predefined services.
9.3.3.3 Source Address
What is the connection’s source address; is it on the LAN or WAN? Is it a single IP, a range of
IPs or a subnet?
9.3.3.4 Destination Address
What is the connection’s destination address; is it on the LAN or WAN? Is it a single IP, a
range of IPs or a subnet?
9.4 Connection Direction
This section describes examples for firewall rules for connections going from LAN to WAN
and from WAN to LAN.
LAN to LAN/ Router and WAN to WAN/ Router rules apply to packets coming in on the
associated interface (LAN or WAN respectively). LAN to LAN/ Router means policies for
LAN-to-ZyXEL Device (the policies for managing the ZyXEL Device through the LAN
interface) and policies for LAN-to-LAN (the policies that control routing between two subnets
on the LAN). Similarly, WAN to WAN/ Router polices apply in the same way to the WAN
port.
Содержание P-660H-T1 v2
Страница 1: ...www zyxel com P 660H Tx v2 ADSL 2 4 port Gateway User s Guide Version 3 40 2 2007 Edition 1...
Страница 2: ......
Страница 7: ...Safety Warnings P 660H Tx v2 User s Guide 7...
Страница 8: ...Safety Warnings P 660H Tx v2 User s Guide 8...
Страница 10: ...Contents Overview P 660H Tx v2 User s Guide 10...
Страница 24: ...List of Figures P 660H Tx v2 User s Guide 24...
Страница 28: ...List of Tables P 660H Tx v2 User s Guide 28 Table 125 NetBIOS Filter Default Settings 296...
Страница 29: ...29 PART I Introduction Introducing the ZyXEL Device 31 Introducing the Web Configurator 37...
Страница 30: ...30...
Страница 36: ...Chapter 1 Introducing the ZyXEL Device P 660H Tx v2 User s Guide 36...
Страница 49: ...49 PART II Wizards Wizard Setup for Internet Access 51 Bandwidth Management Wizard 59...
Страница 50: ...50...
Страница 58: ...Chapter 3 Wizard Setup for Internet Access P 660H Tx v2 User s Guide 58 Figure 27 Connection Test Failed 2...
Страница 64: ...Chapter 4 Bandwidth Management Wizard P 660H Tx v2 User s Guide 64...
Страница 65: ...65 PART III Network WAN Setup 67 LAN Setup 85 Network Address Translation NAT Screens 97...
Страница 66: ...66...
Страница 84: ...Chapter 5 WAN Setup P 660H Tx v2 User s Guide 84...
Страница 109: ...109 PART IV Security Firewalls 111 Firewall Configuration 123 Content Filtering 145...
Страница 110: ...110...
Страница 130: ...Chapter 9 Firewall Configuration P 660H Tx v2 User s Guide 130 Figure 65 Firewall Edit Rule...
Страница 144: ...Chapter 9 Firewall Configuration P 660H Tx v2 User s Guide 144...
Страница 150: ...150...
Страница 154: ...Chapter 11 Static Route P 660H Tx v2 User s Guide 154...
Страница 168: ...Chapter 13 Dynamic DNS Setup P 660H Tx v2 User s Guide 168...
Страница 180: ...Chapter 14 Remote Management Configuration P 660H Tx v2 User s Guide 180...
Страница 192: ...Chapter 15 Universal Plug and Play UPnP P 660H Tx v2 User s Guide 192...
Страница 193: ...193 PART VI Maintenance and Troubleshooting System 195 Tools 201 Diagnostic 207 Logs 209 Troubleshooting 227...
Страница 194: ...194...
Страница 200: ...Chapter 16 System P 660H Tx v2 User s Guide 200...
Страница 206: ...Chapter 17 Tools P 660H Tx v2 User s Guide 206...
Страница 226: ...Chapter 19 Logs P 660H Tx v2 User s Guide 226...
Страница 232: ...232...
Страница 239: ...Appendix A Product Specifications P 660H Tx v2 User s Guide 239...
Страница 240: ...Appendix A Product Specifications P 660H Tx v2 User s Guide 240...
Страница 256: ...Appendix B Internal SPTGEN P 660H Tx v2 User s Guide 256...
Страница 302: ...Appendix I Legal Information P 660H Tx v2 User s Guide 302...