Eicon Networks S92 Instrukcja Użytkownika Strona 82

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 209
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 81
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 82
Ifthelogfilegrowstoobig(thisispossibleinabusynetwork),considertostarta
newlogfile.Whenanewlogfileisstarted,thecurrentonewillbeautomatically
savedwithanamethathasthecurrentdateappendedtoit.
Apartfromthelog,wemay,throughtheSystemStatusinterface,watchinrealtime
thenumberofpacketsthatareDropped,Rejected,InspectedandLogged.
ConfiguringtheR ulebaseforFW2_B2C:
Refertot he“ProductsPreparation”section on FW1and WindowsNT hardening.
SecurityPoliciesandOrders:
FW2_B2Cisthesecondlayerof firewall protection againstoutsideintrusionalong
theB2Clink.Italsopreventstheinternalstaffsfromtamperingwiththepublic
serviceservers. Thesecuritypolicieshereinclude:
1,Ecommercewebservice:
n AnytrafficallowedfromInternal_Admin.
n HTTP/HTTPStrafficallowedfrom Internal_Dev (DevelopersuseHTTP/HTTPS
basedupdatemethodsuchasFrontpageServerextension).
n HTTP/HTTPStrafficallowedfromInternal_Clients.
n HTTP/HTTPStrafficallowedfromRAS_Net.
2,Externalemailservice:
n Anytrafficallowedfrom Internal_Admin.
n SMTPtrafficallowedfromtheinternalemailserverforretrievingandsending
emailstoandfromtheoutsideworld.
3,External DNSservice:
n Anytrafficallowedfrom Internal_Admin.
n DNSquery trafficallowedfromInternal_Dev.
n DNSquerytrafficallowedfromInternal_Clients.
n DNSquerytrafficallowedfromRAS_Net.
4,IDS:
Przeglądanie stron 81
1 2 ... 77 78 79 80 81 82 83 84 85 86 87 ... 208 209

Komentarze do niniejszej Instrukcji

Brak uwag