Netgear FVS336G-300NAS Specifications Page 218

  • Download
  • Add to my manuals
  • Print
  • Page
    / 693
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 217
Customize Firewall Protection
218
ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv3
rule informs the firewall to direct inbound traffic for a particular service to one local server
based on the destination port number. This process is known as port forwarding.
WARNING:
Allowing inbound services opens security holes in your network.
Enable only those ports that are necessary for your network.
The VPN firewall always blocks denial of service (DoS) attacks. A DoS attack does not
attempt to steal data or damage your computers but overloads your Internet connection so
that you cannot use it (that is, the service becomes unavailable). By default, multiple
concurrent connections of the same application from one host or IP address (such as multiple
DNS queries from one computer) trigger the VPN firewall’s DoS protection. For information
about changing this default behavior, see
Manage Protection Against Common Network
Attacks on page 268.
Whether or not DHCP is enabled, how the computer accesses the server’s LAN address
impacts the inbound rules. For example:
If your external IP address is assigned dynamically by your ISP (DHCP enabled), the IP
address might change periodically as the DHCP lease expires. Consider using Dynamic
DNS so that external users can always find your network (see
Manage Dynamic DNS
Connections on page 63).
If the IP address of the local server computer is assigned by DHCP, it might change when
the computer is rebooted. To avoid this situation, configure a reserved IP address that is
bound to the MAC address of the server (see
DHCP Address Reservation on page 134).
Local computers must access the local server by using the computers’ local LAN
addresses. Attempts by local computers to access the server using the external WAN IP
address fail.
For more conceptual information about firewall protection, see Firewall Protection on
page 211.
Tip: For information about yet another way to allow certain types of
inbound traffic that would otherwise be blocked by the firewall, see
Manage Port Triggering on page 327.
Note: Some residential broadband ISP accounts do not allow you to run any
server processes (such as a web or FTP server) from your location.
Your ISP might periodically check for servers and might suspend your
account if it discovers any active servers at your location. If you are
unsure, see the acceptable use policy of your ISP.
Page view 217
1 2 ... 213 214 215 216 217 218 219 220 221 222 223 ... 692 693

Comments to this Manuals

No comments