19.6. Scenario: Setting Up Ids - D-Link DFL-1600 User Manual

Network security firewall
Hide thumbs Also See for DFL-1600:
Table of Contents

Advertisement

19.6. Scenario: Setting up IDS

19.6
The following example illustrates the steps needed to set up IDS for a
simple scenario where a mail server is exposed to the Internet on the DMZ
network, with a public IP address, and is to be protected by the IDS, as
shown in Figure 19.4. The Internet can be reached through the firewall on
the WAN interface.
WebUI
:
1. Configuring Objects and Services:
It is assumed that an object defining the mail server has been created,
and that interface and network objects exist for the internal and external
network.
In case a service for SMTP does not already exist, it must be created, which
is done in Objects
2. Create IDS Rule
This IDS rule will be called IDSMailSrvRule, and the service to use is the
previously created SMTP service. Source Interface and Source Network
defines where traffic is coming from, in this example the external network.
The Destination Interface and Destination Network define where traffic
is directed to, in this case the mail server. Destination Network should
therefore be set to the object defining the mail server.
: Setting up IDS
Figure 19.4: An IDS Scenario
Services. Type is TCP, and destination port is 25.
D-Link Firewalls User's Guide
189

Advertisement

Table of Contents
loading

Table of Contents