Features That Increase Traffic - NETGEAR ProSAFE SRX5308 Reference Manual

Gigabit quad wan ssl vpn firewall
Hide thumbs Also See for ProSAFE SRX5308:
Table of Contents

Advertisement

ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
In order to reduce traffic, the VPN firewall provides the following methods to filter web
content:
Keyword blocking. You can specify words that, should they appear in the website name
(URL) or newsgroup name, cause that site or newsgroup to be blocked by the VPN
firewall.
Web object blocking. You can block the following web component types: embedded
objects (ActiveX and Java), proxies, and cookies.
To further narrow down the content filtering, you can configure groups to which the
content-filtering rules apply and trusted domains for which the content-filtering rules do not
apply.
Source MAC Filtering
If you want to reduce outgoing traffic by preventing Internet access by certain computers on
the LAN, you can use the source MAC filtering feature to drop the traffic received from the
computers with the specified MAC addresses. By default, this feature is disabled; all traffic
received from computers with any MAC address is allowed. See
Filtering
on page 190 for the procedure on how to use this feature.

Features That Increase Traffic

The following features of the VPN firewall tend to increase the traffic load on the WAN side:
LAN WAN inbound rules (also referred to as port forwarding)
DMZ WAN inbound rules (also referred to as port forwarding)
Port triggering
Enabling the DMZ port
Configuring exposed hosts
Configuring VPN tunnels
LAN WAN Inbound Rules and DMZ WAN Inbound Rules (Port Forwarding)
The LAN WAN Rules screen and the DMZ WAN Rules screen list all existing rules for
inbound traffic (from WAN to LAN and from WAN to the DMZ). Any inbound rule that you
create allows additional incoming traffic and therefore increases the traffic load on the WAN
side.
ON the LAN WAN screen, if you have not defined any rules, only the default rule is listed. The
default LAN WAN inbound rule blocks all access from outside except responses to requests
from the LAN side.
WARNING:
Incorrect configuration of inbound firewall rules can cause
serious connection problems.
Network and System Management
332
Enable Source MAC

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents