06.03.2015 Views

iPECS SBG-1000 User Manual

iPECS SBG-1000 User Manual

iPECS SBG-1000 User Manual

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong> <strong>User</strong> <strong>Manual</strong> (DATA Features)<br />

You may choose between three pre-defined security levels for <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>: Minimum,<br />

Typical (the default), and Maximum. The following table summarizes <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>’s behavior<br />

for each of the three security levels.<br />

Security Level<br />

Maximum Security<br />

Typical Security (Default)<br />

Minimum Security<br />

Requests Originating in the<br />

WAN (Incoming Traffic)<br />

Blocked: No access to home<br />

network from Internet, except as<br />

configured in the Port Forwarding,<br />

DMZ host and Remote Access<br />

screens<br />

Blocked: No access to home<br />

network from Internet, except as<br />

configured in the Port Forwarding,<br />

DMZ host and Remote Access<br />

screens<br />

Unrestricted: Permits full access<br />

from Internet to home network; all<br />

connection attempts permitted<br />

Requests Originating in the<br />

LAN (Outgoing Traffic)<br />

Limited: Only commonly-used<br />

services, such as<br />

Web-browsing and e-mail, are<br />

permitted. The list of allowed<br />

services can be edited in the<br />

Access Control screen (refer<br />

to Section 5.2.2)<br />

Unrestricted: All services are<br />

permitted, except as<br />

configured in the Access<br />

Control screen<br />

Unrestricted: All services are<br />

permitted, except as<br />

configured in the Access<br />

Control screen<br />

Table 5.1 <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>’s Firewall Security Levels<br />

To configure <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>’s basic security settings, perform the following:<br />

1. Choose between the three predefined security levels described in the table above.<br />

Note: Using the Minimum Security setting may expose the home network to<br />

significant security risks, and thus should only be used, when necessary, for short<br />

periods of time.<br />

2. Check the 'Block IP Fragments' box in order to protect your home network from a common<br />

type of hacker attack that could make use of fragmented data packets to sabotage your<br />

home network. Note that VPN over IPSec and some UDP-based services make legitimate<br />

use of IP fragments. In case of enabling these services, you will need to allow IP fragments<br />

to pass into the home network.<br />

3. Click 'OK' to save the settings.<br />

By default, the selected security level affects access to such Internet services as Telnet, FTP,<br />

HTTP, HTTPS, DNS, IMAP, POP3 and SNTP. Note that some programs (such as some Internet<br />

messengers and Peer-To-Peer clients) tend to use ports of the above-mentioned services in case<br />

they cannot connect using their own default ports. When allowing this behavior, the Internet<br />

connection requests of such programs will not be blocked, even at the ‘Maximum’ security level.<br />

After the security level is set, the firewall regulates the flow of data between the home network and<br />

the Internet. Both incoming and outgoing data are inspected and then either accepted (allowed to<br />

pass through <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>) or rejected (barred from passing through <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>),<br />

according to a flexible and configurable set of rules. These rules are designed to prevent unwanted<br />

36

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!