Eicon Networks S92 Uživatelský manuál Strana 96

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 209
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 95
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 96
Internal_Servers(192.168.18.0)configuredasTrusted.
ConfiguretheSecurityLevel:
Weneedthehighestpossiblelevelofsecurityhere. Tosetsuchsecurity,useCustom
Settings,andseteveryblockingoptiontoHigh.Allthealertoptionsshouldbe
enabledaswell.
ConfiguretheAdvancedOptions:
IntheAdvancedOptionssection,enablethefollowingoptions:
n BlockIGMPProtocol:IPmulticastisnottobeusedinournetworkanyway,so
thisoptionshouldbeblocked.
n StealthBlockedPorts:Thiscausestheblockedportstonotrespondtoenquiries
fromtheoutside.Suchoptioneliminatesthehackersopportunityoflearningany
unnecessary networkinformation.
n BlockFragmentedIPPackets:FragmentedIPpacketsareoftenusedasawayto
attacksystems.Thisoptiondisablessuchthreat.
ConfigureIntrusionDetection:
NortonFirewallcandetectportscanattemptsandautomaticallyblocktheattackers
frommakingfurtherconnectionattempts.
ConfigureLogging:
Weshouldalwaysoptforloggingasmuchinformationaspossible.SettheReporting
LeveltoHighandensurethatyourdriveislargeenoughtoholdthelargeamountof
loggeddata.
BasicTesting: 
n FromInternal_Dev,accessafileshareinInternal_Servers.Therequestshould
succeed.
n FromInternal_Dev,accessaninternetwebsiteviaISA_Cache’sport8080.The
Zobrazit stránku 95
1 2 ... 91 92 93 94 95 96 97 98 99 100 101 ... 208 209

Komentáře k této Příručce

Žádné komentáře