Eicon Networks S92 Bedienungsanleitung Seite 85

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 209
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 84
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 85
2,
DonotenabletheSynDefenderGateway option.ItisnotlikelytoseeSynflood
attacksagainstthisfirewallfromtheinsidenetwork.
3,
Configurethefollowingrules:
n Allow AdminaccesstoallserversinPublic_Servicesviaanytraffic.
n AllowStaffaccesstoWWWviaHTTPandHTTPS.
n AllowStaffaccesstoDNSviaDNSquery.
n AllowDevaccesstoWWW viaHTTP andHTTPS.
n AllowDevaccesstoDNS viaDNSquery.
n AllowRAS_UseraccesstoWWWviaHTTPandHTTPS.
n AllowRAS_UseraccesstoDNSviaDNSquery.
n AllowInt_EmailtoreceiveSMTPalertsfromIDS.Weneedthisrulesothatthe
alertscanbeforwardedtotheadministratorsmailbox.Keepinmindthough,
thatwiththisruleinplace,theIDSmustbeabsolutelysecure,oranintrusion
pathtotheinsidenetworkwillcometrue.
n AllowInt_EmailtoinitiateSMTPrequeststoEmail.Weneedthisrulesothat
theinternalemailsystemcaninitializecommunicationwiththeexternalonefor
sendingoutboundemailsandretrievinginboundqueuedemails
4,
Dropandlogeverythingelse. ThisrulemustbetheLASTrule.
Exceptforthelast“Dropeverythingrule”,theorderoftheruleswedefineddoes
notmattergiventhesmallnumberofrulesandtheirnonconflictingnature.
5,
VerifythepolicyviaPolicy Verify.
6,
Installthepolicy viaPolicy –Install.InstallthepolicyontoSELF.
7,
Performsomebasictesting.
8,
Seitenansicht 84
1 2 ... 80 81 82 83 84 85 86 87 88 89 90 ... 208 209

Kommentare zu diesen Handbüchern

Keine Kommentare