Eicon Networks S92 Instrukcja Użytkownika Strona 85

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 209
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 84
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 85
2,
DonotenabletheSynDefenderGateway option.ItisnotlikelytoseeSynflood
attacksagainstthisfirewallfromtheinsidenetwork.
3,
Configurethefollowingrules:
n Allow AdminaccesstoallserversinPublic_Servicesviaanytraffic.
n AllowStaffaccesstoWWWviaHTTPandHTTPS.
n AllowStaffaccesstoDNSviaDNSquery.
n AllowDevaccesstoWWW viaHTTP andHTTPS.
n AllowDevaccesstoDNS viaDNSquery.
n AllowRAS_UseraccesstoWWWviaHTTPandHTTPS.
n AllowRAS_UseraccesstoDNSviaDNSquery.
n AllowInt_EmailtoreceiveSMTPalertsfromIDS.Weneedthisrulesothatthe
alertscanbeforwardedtotheadministratorsmailbox.Keepinmindthough,
thatwiththisruleinplace,theIDSmustbeabsolutelysecure,oranintrusion
pathtotheinsidenetworkwillcometrue.
n AllowInt_EmailtoinitiateSMTPrequeststoEmail.Weneedthisrulesothat
theinternalemailsystemcaninitializecommunicationwiththeexternalonefor
sendingoutboundemailsandretrievinginboundqueuedemails
4,
Dropandlogeverythingelse. ThisrulemustbetheLASTrule.
Exceptforthelast“Dropeverythingrule”,theorderoftheruleswedefineddoes
notmattergiventhesmallnumberofrulesandtheirnonconflictingnature.
5,
VerifythepolicyviaPolicy Verify.
6,
Installthepolicy viaPolicy –Install.InstallthepolicyontoSELF.
7,
Performsomebasictesting.
8,
Przeglądanie stron 84
1 2 ... 80 81 82 83 84 85 86 87 88 89 90 ... 208 209

Komentarze do niniejszej Instrukcji

Brak uwag