380 likes | 562 Views
OfficeConnect Internet Firewall. Features and Functionality. Mark Guntrip 1st July 2000. OfficeConnect Internet Firewall DMZ. POWER. LAN. DMZ. WAN. RESET. OfficeConnect Internet Firewall. Firewall Security Internet Filtering Logs and Alerts User Remote Access DHCP Capabilities DMZ.
E N D
OfficeConnect Internet Firewall Features and Functionality Mark Guntrip 1st July 2000
OfficeConnect Internet Firewall DMZ POWER LAN DMZ WAN RESET
OfficeConnect Internet Firewall • Firewall Security • Internet Filtering • Logs and Alerts • User Remote Access • DHCP Capabilities • DMZ
Firewall Security • Protect LAN from invasions from WAN • Carried out by Stateful Packet Inspection • Only TCP and UDP packets allowed through, all other packets dropped
Easily Set Up network • Getting started Wizard and Quick Start Guide for the novice user • Easy to use graphical interface for complex network setup • NO COMMAND LINE INTERFACE
Attacks Blocked • Denial of Service attacks are blocked from all ports • Syn Flood, Ping of Death, IP Spoofing, Land Attack, Smurf Amplification, Sequence number prediction • All attacks alerted and logged with IP address details • Logs and alerts can be e-mailed for immediate action
Filter Unwanted Web Sites • Built-in web filtering capabilities • Selected web sites can be blocked • Keyword • IP address or URL • Blocked Web Site hits can be alerted and logged • Block Java, Cookies and ActiveX
Web Site Filter Subscription • Annual subscription to a Web Site Filter list • Web Site Filter offers blocking by category • 10s of 1000’s of web sites in filter list • List updated every week
Control Services to and from the LAN • Block and activate service protocols into and from your network independently • Specify port numbers as well as defined services • Control the direction of allowed/blocked services
Network Diagnostics • Identify possible network problems
Data Reports • Produce reports on the usage of your bandwidth, and web site hits
User Privileges • Give user privileges to selected users • Bypass filters • Remote Access • Allows different levels of user
Remote Access • Allow authenticated users on the Internet to access the LAN • Allows location independent working • Password encryption for security
DMZ • Publicly available servers that are still protected from DoS attacks • e.g. Web, email and FTP servers • Control service protocols allowed into the DMZ
Configuration Methods • http to 192.168.1.254 (255.255.255.0) (default IP address from factory) • Wizard Install - pushed out of firewall (EASY- Defaults) • Will find as much network information as it can, user has to enter less • Designed for novice user • Manual Install - bypass wizard, go straight to management interface • For more experienced users, must know all network information
Installation Prep • What you need for manual install: • WAN IP Address(es) /Mask – from DSL/Cable/ISP • DNS addresses / SMTP IP / mail addresses • Internal LAN IP Scheme – DHCP or Static • Connectivity via Hub(s) or Switch(s) • PC with browser
Wizard Install • Enter new password • Select time zone • If there is a DHCP or PPPoE server detected on the WAN, enable or disable firewall DHCP server • If there is no DHCP or PPPoE server detected on the WAN, enter network information • Complete
Manual Install - First Login • Default Login – admin , password
You are in ! ! • Configure (clockwise from password then top to bottom)
Set Password • Change default admin password
Date and Time • Set to use NTP
Advanced menu(Proxy relay , Intranet, Static Routes, 1 to 1 NAT)