General Screen; Services Screen - ZyXEL Communications NBG6716 User Manual

Hide thumbs Also See for NBG6716:
Table of Contents

Advertisement

Don't enable any local service (such as NTP) that you don't use. Any enabled service could present
4
a potential security risk. A determined hacker might be able to find creative ways to misuse the
enabled services to access the firewall or the network.
For local services that are enabled, protect against misuse. Protect by configuring the services to
5
communicate only with specific peers, and protect by configuring rules to block packets for the
services at specific interfaces.
Protect against IP spoofing by making sure the firewall is active.
6
Keep the firewall in a secured (locked) room.
7

17.2 General Screen

Use this screen to enable or disable the NBG6716's firewall, and set up firewall logs. Click Security
> Firewall to open the General screen.
Figure 90 Security > Firewall > General l
The following table describes the labels in this screen.
Table 57 Security > Firewall > General
LABEL
Enable Firewall
Apply
Cancel

17.3 Services Screen

If an outside user attempts to probe an unsupported port on your NBG6716, an ICMP response
packet is automatically returned. This allows the outside user to know the NBG6716 exists. Use this
screen to prevent the ICMP response packet from being sent. This keeps outsiders from discovering
your NBG6716 when unsupported ports are probed.
You can also use this screen to enable service blocking, enter/delete/modify the services you want
to block and the date/time you want to block them.
Click Security > Firewall > Services. The screen appears as shown next.
Chapter 17 Firewall
DESCRIPTION
Select this check box to activate the firewall. The NBG6716 performs access control and
protects against Denial of Service (DoS) attacks when the firewall is activated.
Click Apply to save the settings.
Click Cancel to start configuring this screen again.
NBG6716 User's Guide
130

Advertisement

Table of Contents
loading

Table of Contents