Chapter 10 Firewalls
P-660HWP-D1 User’s Guide
159
• Always shred confidential information, particularly about your computer, before throwing
it away. Some hackers dig through the trash of companies or individuals for information
that might help them in an attack.
10.7 Packet Filtering Vs Firewall
Below are some comparisons between the P-660HWP-D1’s filtering and firewall functions.
10.7.1 Packet Filtering:
• The router filters packets as they pass through the router’s interface according to the filter
rules you designed.
• Packet filtering is a powerful tool, yet can be complex to configure and maintain,
especially if you need a chain of rules to filter a service.
• Packet filtering only checks the header portion of an IP packet.
10.7.1.1 When To Use Filtering
• To block/allow LAN packets by their MAC addresses.
• To block/allow special IP packets which are neither TCP nor UDP, nor ICMP packets.
• To block/allow both inbound (WAN to LAN) and outbound (LAN to WAN) traffic
between the specific inside host/network "A" and outside host/network "B". If the filter
blocks the traffic from A to B, it also blocks the traffic from B to A. Filters can not
distinguish traffic originating from an inside host or an outside host by IP address.
• To block/allow IP trace route.
10.7.2 Firewall
• The firewall inspects packet contents as well as their source and destination addresses.
Firewalls of this type employ an inspection module, applicable to all protocols, that
understands data in the packet is intended for other layers, from the network layer (IP
headers) up to the application layer.
• The firewall performs stateful inspection. It takes into account the state of connections it
handles so that, for example, a legitimate incoming packet can be matched with the
outbound request for that packet and allowed in. Conversely, an incoming packet
masquerading as a response to a nonexistent outbound request can be blocked.
• The firewall uses session filtering, i.e., smart rules, that enhance the filtering process and
control the network session rather than control individual packets in a session.
• The firewall provides e-mail service to notify you of routine reports and when alerts occur.
10.7.2.1 When To Use The Firewall
• To prevent DoS attacks and prevent hackers cracking your network.
• A range of source and destination IP addresses as well as port numbers can be specified
within one firewall rule making the firewall a better choice when complex rules are
required.
Содержание P-660HWP-D1
Страница 2: ......
Страница 7: ...Safety Warnings P 660HWP D1 User s Guide 7...
Страница 8: ...Safety Warnings P 660HWP D1 User s Guide 8...
Страница 10: ...Contents Overview P 660HWP D1 User s Guide 10...
Страница 20: ...Table of Contents P 660HWP D1 User s Guide 20...
Страница 26: ...List of Figures P 660HWP D1 User s Guide 26...
Страница 31: ...31 PART I Introduction Introducing the P 660HWP D1 33 Introducing the Web Configurator 41...
Страница 32: ...32...
Страница 39: ...Chapter 1 Introducing the P 660HWP D1 P 660HWP D1 User s Guide 39 Figure 7 P 660HWP D1 with ISDN...
Страница 40: ...Chapter 1 Introducing the P 660HWP D1 P 660HWP D1 User s Guide 40...
Страница 54: ...Chapter 2 Introducing the Web Configurator P 660HWP D1 User s Guide 54 Figure 19 System General...
Страница 55: ...55 PART II Wizards Wizard Setup for Internet Wireless Access 57 Bandwidth Management Wizard 69...
Страница 56: ...56...
Страница 72: ...72...
Страница 90: ...Chapter 5 WAN Setup P 660HWP D1 User s Guide 90...
Страница 147: ...147 PART IV Security Firewalls 149 Firewall Configuration 161 Content Filtering 183 Certificates 187...
Страница 148: ...148...
Страница 168: ...Chapter 11 Firewall Configuration P 660HWP D1 User s Guide 168 Figure 93 Firewall Edit Rule...
Страница 182: ...Chapter 11 Firewall Configuration P 660HWP D1 User s Guide 182...
Страница 186: ...Chapter 12 Content Filtering P 660HWP D1 User s Guide 186...
Страница 210: ...210...
Страница 214: ...Chapter 14 Static Route P 660HWP D1 User s Guide 214...
Страница 230: ...Chapter 16 Dynamic DNS Setup P 660HWP D1 User s Guide 230...
Страница 242: ...Chapter 17 Remote Management Configuration P 660HWP D1 User s Guide 242...
Страница 254: ...Chapter 18 Universal Plug and Play UPnP P 660HWP D1 User s Guide 254...
Страница 255: ...255 PART VI Maintenance and Troubleshooting System 257 Logs 263 Tools 281 Diagnostic 287 Troubleshooting 289...
Страница 256: ...256...
Страница 262: ...Chapter 19 System P 660HWP D1 User s Guide 262...
Страница 280: ...Chapter 20 Logs P 660HWP D1 User s Guide 280...
Страница 286: ...Chapter 21 Tools P 660HWP D1 User s Guide 286...
Страница 296: ...296...
Страница 340: ...Appendix D IP Subnetting P 660HWP D1 User s Guide 340...
Страница 344: ...Appendix E Command Interpreter P 660HWP D1 User s Guide 344...
Страница 360: ...Appendix H Legal Information P 660HWP D1 User s Guide 360...
Страница 366: ...Appendix I Customer Support P 660HWP D1 User s Guide 366...
Страница 374: ...Index P 660HWP D1 User s Guide 374...