Eicon Networks S92 Manuel d'utilisateur Page 82

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 209
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 81
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 82
Ifthelogfilegrowstoobig(thisispossibleinabusynetwork),considertostarta
newlogfile.Whenanewlogfileisstarted,thecurrentonewillbeautomatically
savedwithanamethathasthecurrentdateappendedtoit.
Apartfromthelog,wemay,throughtheSystemStatusinterface,watchinrealtime
thenumberofpacketsthatareDropped,Rejected,InspectedandLogged.
ConfiguringtheR ulebaseforFW2_B2C:
Refertot he“ProductsPreparation”section on FW1and WindowsNT hardening.
SecurityPoliciesandOrders:
FW2_B2Cisthesecondlayerof firewall protection againstoutsideintrusionalong
theB2Clink.Italsopreventstheinternalstaffsfromtamperingwiththepublic
serviceservers. Thesecuritypolicieshereinclude:
1,Ecommercewebservice:
n AnytrafficallowedfromInternal_Admin.
n HTTP/HTTPStrafficallowedfrom Internal_Dev (DevelopersuseHTTP/HTTPS
basedupdatemethodsuchasFrontpageServerextension).
n HTTP/HTTPStrafficallowedfromInternal_Clients.
n HTTP/HTTPStrafficallowedfromRAS_Net.
2,Externalemailservice:
n Anytrafficallowedfrom Internal_Admin.
n SMTPtrafficallowedfromtheinternalemailserverforretrievingandsending
emailstoandfromtheoutsideworld.
3,External DNSservice:
n Anytrafficallowedfrom Internal_Admin.
n DNSquery trafficallowedfromInternal_Dev.
n DNSquerytrafficallowedfromInternal_Clients.
n DNSquerytrafficallowedfromRAS_Net.
4,IDS:
Vue de la page 81
1 2 ... 77 78 79 80 81 82 83 84 85 86 87 ... 208 209

Commentaires sur ces manuels

Pas de commentaire