Figure 108 Security > Idp > General; Table 47 Security > Idp > General Setup - ZyXEL Communications ZYWALL P1 User Manual

Internet security appliance
Hide thumbs Also See for ZYWALL P1:
Table of Contents

Advertisement

Chapter 11 Configuring IDP
Figure 108 SECURITY > IDP > General
The following table describes the labels in this screen.
Table 47 SECURITY > IDP > General Setup
LABEL
General Setup
Enable Intrusion
Detection and
Protection
From, To
Protected Interface
Apply
Reset
176
DESCRIPTION
Select this check box to enable IDP on the ZyWALL. When this check box is
cleared the ZyWALL is in IDP "bypass" mode and no IDP checking is done.
Select the directions of travel of packets that you want to check. Select or clear
a row or column's first check box (with the interface label) to select or clear the
interface's whole row or column.
For example, From LAN To LAN means packets traveling from a computer on
one LAN subnet to a computer on another LAN subnet on the LAN interface of
the ZyWALL or the ZyWALL itself. The ZyWALL does not check packets
traveling from a LAN computer to another LAN computer on the same subnet.
From VPN means traffic that came into the ZyWALL through a VPN tunnel and
is going to the selected "to" interface. For example, From VPN To LAN
specifies the VPN traffic that is going to the LAN or terminating at the ZyWALL's
LAN interface. The ZyWALL checks the traffic after decrypting it.
To VPN is traffic that comes in through the selected "from" interface and goes
out through the VPN tunnel. For example, From LAN To VPN specifies the
traffic that is coming from the LAN and going out through the VPN tunnel. The
ZyWALL checks the traffic before encrypting it.
From VPN To VPN means traffic that comes in through the VPN tunnel and
terminates at the ZyWALL. This is the case if you allow someone to use a
service (like Telnet or HTTP) through the VPN tunnel to manage the ZyWALL.
The ZyWALL checks the traffic after decrypting it (before encrypting it again).
Note: The VPN connection directions apply to the traffic going to
or from the ZyWALL's VPN tunnel. They do not apply to
other VPN traffic for which the ZyWALL is not one of the
gateways (VPN pass-through traffic).
Select the Active check box to apply IDP to the corresponding interface. Traffic
going from the ZyWALL out through this interface is then checked against the
signature database for possible intrusions. For example, if you want to protect
the LAN computers from intrusions, select the LAN interface.
Click this button to save your changes back to the ZyWALL.
Click this button to begin configuring this screen afresh.
ZyWALL P1 User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents