Table 15-1: Behavior For The Three Security Levels - AudioCodes MP-20 Series User Manual

Cpe & access gateway products, multimedia home gateway
Hide thumbs Also See for MP-20 Series:
Table of Contents

Advertisement

User's Manual
You can choose from among three pre-defined security levels for the device: Minimum,
Typical, and Maximum (the default setting). The table below summarizes the behavior of
the device for each of the three security levels.
Security Level
Maximum
Blocked: No access to home network
Security
from Internet, except as configured in
(Default)
the Local Servers, DMZ host and
Remote Access screens
Typical Security Blocked: No access to home network
from Internet, except as configured in
the Local Servers, DMZ host and
Remote Access screens
Minimum
Unrestricted: Permits full access from
Security
Internet to home network; all connection
attempts permitted.
These services include Telnet, FTP, HTTP, HTTPS, DNS, IMAP, POP3 and SMTP.
The list of allowed services at 'Maximum Security' mode can be edited in the screen's
'Access Control on page 240'.
Some applications (such as some Internet messengers and Peer-To-Peer client
applications) tend to use these ports if they cannot connect with their own default ports.
When applying this behavior, these applications are not blocked outbound, even at
Maximum Security Level.
To configure the device's security settings:
(See the figure 'General Security Level Settings' on page 238.)
1.
Choose from among the three predefined security levels described in the table above.
'Maximum Security' is the default setting.
Using the Minimum Security setting may expose the home network to
significant security risks, and thus should only be used, when necessary, for
short periods of time.
2.
Check the 'Block IP Fragments' check box to protect your home network from a
common type of hacker attack that could make use of fragmented data packets to
sabotage your home network. Note that some UDP-based services make legitimate
use of IP fragments. You need to allow IP fragments to pass into the home network to
make use of these select services.
3.
In the 'TCP Session timeout' field, enter the time-to-live (TTL) in units of seconds for
TCP sessions. The valid range is 1 to 3600 hours (default is an hour).
4.
Click OK to save the changes.
Version 4.4.3

Table 15-1: Behavior for the Three Security Levels

Requests Originating
in the WAN
(Incoming Traffic)
Limited: Only commonly- used services,
such as Web- browsing and e-mail, are
permitted
Unrestricted: All services are permitted,
except as configured in the Access
Control screen
Unrestricted: All services are permitted,
except as configured in the Access
Control screen
239
MP-20x Multimedia Home Gateway
15. Security
Requests
Originating
in the LAN
(Outgoing Traffic)

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Mp-20x

Table of Contents