Eicon Networks S92 Manuel d'utilisateur Page 85

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 209
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 84
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 85
2,
DonotenabletheSynDefenderGateway option.ItisnotlikelytoseeSynflood
attacksagainstthisfirewallfromtheinsidenetwork.
3,
Configurethefollowingrules:
n Allow AdminaccesstoallserversinPublic_Servicesviaanytraffic.
n AllowStaffaccesstoWWWviaHTTPandHTTPS.
n AllowStaffaccesstoDNSviaDNSquery.
n AllowDevaccesstoWWW viaHTTP andHTTPS.
n AllowDevaccesstoDNS viaDNSquery.
n AllowRAS_UseraccesstoWWWviaHTTPandHTTPS.
n AllowRAS_UseraccesstoDNSviaDNSquery.
n AllowInt_EmailtoreceiveSMTPalertsfromIDS.Weneedthisrulesothatthe
alertscanbeforwardedtotheadministratorsmailbox.Keepinmindthough,
thatwiththisruleinplace,theIDSmustbeabsolutelysecure,oranintrusion
pathtotheinsidenetworkwillcometrue.
n AllowInt_EmailtoinitiateSMTPrequeststoEmail.Weneedthisrulesothat
theinternalemailsystemcaninitializecommunicationwiththeexternalonefor
sendingoutboundemailsandretrievinginboundqueuedemails
4,
Dropandlogeverythingelse. ThisrulemustbetheLASTrule.
Exceptforthelast“Dropeverythingrule”,theorderoftheruleswedefineddoes
notmattergiventhesmallnumberofrulesandtheirnonconflictingnature.
5,
VerifythepolicyviaPolicy Verify.
6,
Installthepolicy viaPolicy –Install.InstallthepolicyontoSELF.
7,
Performsomebasictesting.
8,
Vue de la page 84
1 2 ... 80 81 82 83 84 85 86 87 88 89 90 ... 208 209

Commentaires sur ces manuels

Pas de commentaire