Eicon Networks S92 Uživatelský manuál Strana 93

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 209
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 92
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 93
ConfiguretheSecurityLevel:
Weneedthehighestpossiblelevelofsecurityhere.Tosetsuchsecurity,useCustom
Settings,andsetevery blockingoption toHigh.Allthealertoptionsshouldbe
enabledaswell.
ConfiguretheAdvancedOptions:
Inthe AdvancedOptionssection,enablethefollowingoptions:
n BlockIGMPProtocol:IPmulticastisnottobeusedinournetworkanyway,so
thisoptionshouldbeblocked.
n StealthBlockedPorts:Thiscausestheblockedportstonotrespondtoenquiries
fromtheoutside.Suchoptioneliminatesthehackersopportunityoflearningany
unnecessarynetworkinformation.
n BlockFragmentedIPPackets:FragmentedIPpacketsareoftenusedasawayto
attacksystems.Thisoptiondisablessuchthreat.
ConfigureIntrusionDetection:
NortonFirewallcandetectportscanattemptsandautomaticallyblocktheattackers
frommakingfurtherconnectionattempts. Enableallofthesefeatures.
ConfigureLogging:
Weshouldalwaysoptforloggingasmuchinformationaspossible.SettheReporting
LeveltoHighandensurethatyourdriveislargeenoughtoholdthelargeamountof
loggeddata.
BasicTesting: 
n FromInternal_Admin,accessafileshareinInternal_Servers.Therequestshould
succeed.
n FromInternal_Admin,accessaninternetwebsiteviaISA_Cache’sport8080.
Therequestshouldsucceed.
n FromRAS_Net,accessafileshareinInternal_Admin.Therequestshouldfail.
n Inspectthelogfile.
Zobrazit stránku 92
1 2 ... 88 89 90 91 92 93 94 95 96 97 98 ... 208 209

Komentáře k této Příručce

Žádné komentáře