Content Filtering; Wireless Lan Mac Address Filtering; Packet Filtering - ZyXEL Communications 10 User Manual

Internet security gateway
Hide thumbs Also See for 10:
Table of Contents

Advertisement

ZyWALL 10~100 Series Internet Security Gateway
Firewall
The ZyWALL is a stateful inspection firewall with DoS (Denial of Service) protection. By default, when the
firewall is activated, all incoming traffic from the WAN to the LAN is blocked unless it is initiated from the
LAN. The ZyWALL firewall supports TCP/UDP inspection, DoS detection and prevention, real time alerts,
reports and logs.
RADIUS (RFC2138, 2139)
RADIUS (Remote Authentication Dial In User Service) server enables authentication, authorization and
accounting for your wireless network. This feature is not available on all models.
IEEE 802.1x for Network Security
The ZyWALL supports the IEEE 802.1x standard that works with the IEEE 802.11 to enhance user
authentication. With the local user profile, the ZyWALL allows you to configure up 32 user profiles without
a network authentication server. In addition, centralized user and accounting management is possible on an
optional network authentication server. This feature is not available on all models.

Content Filtering

The ZyWALL can block web features such as ActiveX controls, Java applets and cookies, as well as disable
web proxies. The ZyWALL can block specific URLs by using the keyword feature. It also allows the
administrator to define time periods and days during which content filtering is enabled and to include or
exclude a range of users on the LAN from content filtering.
You can configure most features of the ZyWALL via SMT but ZyXEL recommends
using the embedded web configurator to configure the firewall and content
filtering.

Wireless LAN MAC Address Filtering

MAC Address Filtering together with ESSID (Extended Service Set IDentifier) and WEP (Wired Equivalent
Privacy) ensure the most secure wireless solution. This feature is not available on all models.
Brute-Force Password Guessing Protection
The ZyWALL has a special protection mechanism to discourage brute-force password guessing attacks on
the ZyWALL's management interfaces. You can specify a wait-time that must expire before entering a fourth
password after three incorrect passwords have been entered. Please see the appendices for details about this
2
feature.

Packet Filtering

The packet filtering mechanism blocks unwanted traffic from entering/leaving your network.
2
Brute Force Password Protection was not available on every model at the time of writing.
1-4
Getting to Know Your ZyWALL

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall 10Zywall 10wZywall 50Zywall 100

Table of Contents