Eicon Networks S92 Manual do Utilizador Página 85

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 209
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 84
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 85
2,
DonotenabletheSynDefenderGateway option.ItisnotlikelytoseeSynflood
attacksagainstthisfirewallfromtheinsidenetwork.
3,
Configurethefollowingrules:
n Allow AdminaccesstoallserversinPublic_Servicesviaanytraffic.
n AllowStaffaccesstoWWWviaHTTPandHTTPS.
n AllowStaffaccesstoDNSviaDNSquery.
n AllowDevaccesstoWWW viaHTTP andHTTPS.
n AllowDevaccesstoDNS viaDNSquery.
n AllowRAS_UseraccesstoWWWviaHTTPandHTTPS.
n AllowRAS_UseraccesstoDNSviaDNSquery.
n AllowInt_EmailtoreceiveSMTPalertsfromIDS.Weneedthisrulesothatthe
alertscanbeforwardedtotheadministratorsmailbox.Keepinmindthough,
thatwiththisruleinplace,theIDSmustbeabsolutelysecure,oranintrusion
pathtotheinsidenetworkwillcometrue.
n AllowInt_EmailtoinitiateSMTPrequeststoEmail.Weneedthisrulesothat
theinternalemailsystemcaninitializecommunicationwiththeexternalonefor
sendingoutboundemailsandretrievinginboundqueuedemails
4,
Dropandlogeverythingelse. ThisrulemustbetheLASTrule.
Exceptforthelast“Dropeverythingrule”,theorderoftheruleswedefineddoes
notmattergiventhesmallnumberofrulesandtheirnonconflictingnature.
5,
VerifythepolicyviaPolicy Verify.
6,
Installthepolicy viaPolicy –Install.InstallthepolicyontoSELF.
7,
Performsomebasictesting.
8,
Vista de página 84
1 2 ... 80 81 82 83 84 85 86 87 88 89 90 ... 208 209

Comentários a estes Manuais

Sem comentários