20.08.2013 Views

User Guide - Kaspersky Lab

User Guide - Kaspersky Lab

User Guide - Kaspersky Lab

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Protection against network attacks 153<br />

Security zones – certain conventional zones that mostly correspond with<br />

subnets that your computer is registered on (this could be local subnets<br />

at home or at work). These zones are usually average risk-level zones.<br />

You can change the status of these zones based on how much you<br />

trust a certain subnet, and you can configure appropriate rules for<br />

packet filtering and applications.<br />

If Firewall Training Mode is enabled, a window will open every time your<br />

computer connects to a new zone, displaying a basic description about it. You<br />

must assign a status to the zone, and network activity will be allowed based on<br />

that status. The possible values of the status are as follows:<br />

• Internet. This is the default status assigned to the Internet, since when<br />

you are connected to it, your computer is subjected to all potential threat<br />

types. This status is also recommended for networks that are not<br />

protected by any anti-virus programs, firewalls, filters, etc. When you<br />

select this status, the program ensures maximum security while you are<br />

using this zone, specifically:<br />

• Blocking any network NetBios activity within the subnet<br />

• Blocking application and packet filtering rules that allow NetBios<br />

activity within this subnet<br />

Even if you have created a shared folder, the information in it will not be<br />

available to users from subnetworks with this status. Additionally, if this<br />

status is selected for a certain subnetwork, you will not be able to<br />

access files and printers of this subnetwork.<br />

• Local Network. The program assigns this status to all zones detected<br />

when it analyzes the computer’s network environment, except the<br />

Internet. This status is recommended for zones with an average risk<br />

factor (for example, corporate LANs). If you select this status, the<br />

program allows:<br />

• Any network NetBios activity within the subnet<br />

• Application and packet filtering rules that allow NetBios activity<br />

within this subnet<br />

Select this status if you want to grant access to certain folders or<br />

printers on your computer but block any other outside activity.<br />

• Trusted. This status is only recommended for zones that you feel are<br />

absolutely safe, and where your computer will not be subject to attacks or<br />

invasions. If you select this status, all network activity is allowed. Even if<br />

Maximum Protection is selected and you have created block rules, they<br />

will not function for remote computers from a trusted zone.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!