Zyxel-communications Internet Security Gateway 10~100 Series Bedienungsanleitung

Stöbern Sie online oder laden Sie Bedienungsanleitung nach Hardware Zyxel-communications Internet Security Gateway 10~100 Series herunter. ZyXEL Communications Internet Security Gateway 10~100 Series User Manual Benutzerhandbuch

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 96
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 0
ZyWALL 10~100 Series
Internet Security Gateway
Reference Guide
Versions 3.52, 3.60 and 3.61
March 2003
Seitenansicht 0
1 2 3 4 5 6 ... 95 96

Inhaltsverzeichnis

Seite 1 - ZyWALL 10~100 Series

ZyWALL 10~100 Series Internet Security Gateway Reference Guide Versions 3.52, 3.60 and 3.61 March 2003

Seite 2 - Copyright

ZyWALL 10~100 Series Internet Security Gateway x List of Charts List of Charts Chart 8-1 Classes of IP Addresses ...

Seite 3 - Interference Statement

ZyWALL 10~100 Series Internet Security Gateway List of Charts xi Chart 13-11 Sample IPSec Logs During Packet Transmission ...

Seite 4 - Caution

ZyWALL 10~100 Series Internet Security Gateway xii Preface Preface About Your ZyWALL Congratulations on your purchase of the ZyWALL Security Gateway.

Seite 5 - ZyXEL Limited Warranty

ZyWALL 10~100 Series Internet Security Gateway Preface xiii Syntax Conventions • “Enter” means for you to type one or more characters and press the

Seite 7 - Table of Contents

General Information I Part I: General Information This part provides background information about setting up your computer’s IP address, triangl

Seite 9 - List of Diagrams

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-1 Chapter 1 Setting up Your Computer’s IP Address All comput

Seite 10 - List of Charts

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-2The Network window Configuration tab displays a list of inst

Seite 11

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-3 1. Click the IP Address tab. -If your IP address is dynami

Seite 12 - Preface

ZyWALL 10~100 Series Internet Security Gateway ii Copyright Copyright Copyright © 2003 by ZyXEL Communications Corporation. The contents of this publ

Seite 13 - Syntax Conventions

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-43. Click the Gateway tab. -If you do not know your gateway

Seite 14

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-5 1. For Windows XP, click start, Control Panel. In Windows

Seite 15 - Part I:

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-64. Select Internet Protocol (TCP/IP) (under the General tab

Seite 16

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-7 6. -If you do not know your gateway's IP address, re

Seite 17 - Chapter 1

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-8 7. In the Internet Protocol TCP/IP Properties window (the G

Seite 18

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-9 1. Click the Apple menu, Control Panel and double-click TC

Seite 19

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-104. For statically assigned settings, do the following: -F

Seite 20 - Windows 2000/NT/XP

ZyWALL 10~100 Series Internet Security Gateway Setting Up Your Computer’s IP Address 1-11 2. Click Network in the icon bar. - Select Automatic f

Seite 22

ZyWALL 10~100 Series Internet Security Gateway Triangle Route 2-1 Chapter 2 Triangle Route The Ideal Setup When the firewall is on, your ZyWALL a

Seite 23

ZyWALL 10~100 Series Internet Security Gateway FCC iii Federal Communications Commission (FCC) Interference Statement This device complies with Part

Seite 24 - Macintosh OS 8/9

ZyWALL 10~100 Series Internet Security Gateway Triangle Route 2-2 Diagram 2-2 “Triangle Route” Problem The “Triangle Route” Solutions This section p

Seite 25

ZyWALL 10~100 Series Internet Security Gateway Triangle Route 2-3 Gateways on the WAN Side A second solution to the “triangle route” problem is to

Seite 27

ZyWALL 10~100 Series Internet Security Gateway The Big Picture 3-1 Chapter 3 The Big Picture The following figure gives an overview of how filteri

Seite 28

ZyWALL 10~100 Series Internet Security Gateway The Big Picture 3-2

Seite 29 - Triangle Route

ZyWALL 10~100 Series Internet Security Gateway Wireless LAN and IEEE 802.11 4-1 Chapter 4 Wireless LAN and IEEE 802.11 A wireless LAN (WLAN) provi

Seite 30 - IP Aliasing

ZyWALL 10~100 Series Internet Security Gateway The Big Picture 4-2The IEEE 802.11 specifies three different transmission methods for the PHY, the

Seite 31 - Gateways on the WAN Side

ZyWALL 10~100 Series Internet Security Gateway Wireless LAN and IEEE 802.11 4-3 Diagram 4-1 Peer-to-Peer Communication in an Ad-hoc Network Infras

Seite 32

ZyWALL 10~100 Series Internet Security Gateway The Big Picture 4-4could be any type of network, it is almost invariably an Ethernet LAN. Mobile no

Seite 33 - The Big Picture

ZyWALL 10~100 Series Internet Security Gateway Wireless LAN with IEEE 802.1x 5-1 Chapter 5 Wireless LAN With IEEE 802.1x As wireless networks becom

Seite 34 - The Big Picture

ZyWALL 10~100 Series Internet Security Gateway iv Information for Canadian Users Information for Canadian Users The Industry Canada label identifie

Seite 35 - Chapter 4

ZyWALL 10~100 Series Internet Security Gateway Wireless LAN with IEEE 802.1x 5-2• Support for RADIUS (Remote Authentication Dial In User Service,

Seite 36

ZyWALL 10~100 Series Internet Security Gateway PPPoE 6-1 Chapter 6 PPPoE PPPoE in Action An ADSL modem bridges a PPP session over Ethernet (PPP over

Seite 37

ZyWALL 10~100 Series Internet Security Gateway 6-2 PPPoE How PPPoE Works The PPPoE driver makes the Ethernet appear as a serial link to the PC and th

Seite 38

ZyWALL 10~100 Series Internet Security Gateway PPTP 7-1 Chapter 7 PPTP What is PPTP? PPTP (Point-to-Point Tunneling Protocol) is a Microsoft propri

Seite 39 - Chapter 5

ZyWALL 10~100 Series Internet Security Gateway 7-2 PPTP PPTP Protocol Overview PPTP is very similar to L2TP, since L2TP is based on both PPTP and L2F

Seite 40 - Client computer

ZyWALL 10~100 Series Internet Security Gateway PPTP 7-3 Diagram 7-3 Example Message Exchange between PC and an ANT PPP Data Connection The PPP fra

Seite 42 - ZyWALL as a PPPoE Client

ZyWALL 10~100 Series Internet Security Gateway IP Subnetting 8-1 Chapter 8 IP Subnetting IP Addressing Routers “route” based on the network numbe

Seite 43 - Chapter 7

ZyWALL 10~100 Series Internet Security Gateway 8-2 IP Subnetting  A class “B” address (16 host bits) can have 216 –2 or 65534 hosts. A class “A” ad

Seite 44 - PPTP Protocol Overview

ZyWALL 10~100 Series Internet Security Gateway IP Subnetting 8-3 With subnetting, the class arrangement of an IP address is ignored. For example, a

Seite 45 - PPP Data Connection

ZyWALL 10~100 Series Internet Security Gateway Warranty v ZyXEL Limited Warranty ZyXEL warrants to the original end user (purchaser) that this produ

Seite 46

ZyWALL 10~100 Series Internet Security Gateway 8-4 IP Subnetting The first three octets of the address make up the network number (class “C”). You wa

Seite 47 - IP Subnetting

ZyWALL 10~100 Series Internet Security Gateway IP Subnetting 8-5 192.168.1.0 with mask 255.255.255.128 is the subnet itself, and 192.168.1.127 with

Seite 48 - Subnetting

ZyWALL 10~100 Series Internet Security Gateway 8-6 IP Subnetting Subnet Address: 192.168.1.128 Lowest Host ID: 192.168.1.129 Broadcast Address: 192.1

Seite 49 - Example: Two Subnets

ZyWALL 10~100 Series Internet Security Gateway IP Subnetting 8-7 Chart 8-12 Class C Subnet Planning NO. “BORROWED” HOST BITS SUBNET MASK NO. SUB

Seite 50

ZyWALL 10~100 Series Internet Security Gateway 8-8 IP Subnetting Chart 8-13 Class B Subnet Planning NO. “BORROWED” HOST BITS SUBNET MASK NO. SUBNET

Seite 51 - Example: Four Subnets

Command and Log Information II Part II: Command and Log Information This part provides information on the command interpreter interface, firewal

Seite 53

ZyWALL 10~100 Series Internet Security Gateway Command Interpreter 9-1 Chapter 9 Command Interpreter The following describes how to use the command

Seite 55 - Part II:

ZyWALL 10~100 Series Internet Security Gateway Firewall Commands 10-1 Chapter 10 Firewall Commands The following describes the firewall commands.

Seite 56

ZyWALL 10~100 Series Internet Security Gateway vi Customer Support Customer Support When you contact your customer support representative please have

Seite 57 - Command Interpreter

ZyWALL 10~100 Series Internet Security Gateway 10-2 Firewall Commands Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION config displa

Seite 58

ZyWALL 10~100 Series Internet Security Gateway Firewall Commands 10-3 Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION config edit fir

Seite 59 - Firewall Commands

ZyWALL 10~100 Series Internet Security Gateway 10-4 Firewall Commands Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION config edit firew

Seite 60 - Chart 10-1 Firewall Commands

ZyWALL 10~100 Series Internet Security Gateway Firewall Commands 10-5 Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION Config edit fir

Seite 61 - Firewall Commands 10-3

ZyWALL 10~100 Series Internet Security Gateway 10-6 Firewall Commands Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION Config edit f

Seite 62 - 10-4 Firewall Commands

ZyWALL 10~100 Series Internet Security Gateway Firewall Commands 10-7 Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION config edit fir

Seite 63 - Firewall Commands 10-5

ZyWALL 10~100 Series Internet Security Gateway 10-8 Firewall Commands Chart 10-1 Firewall Commands FUNCTION COMMAND DESCRIPTION config delete fir

Seite 64 - 10-6 Firewall Commands

ZyWALL 10~100 Series Internet Security Gateway NetBIOS Filter Commands 11-1 Chapter 11 NetBIOS Filter Commands The following describes the NetBIOS

Seite 65 - Firewall Commands 10-7

ZyWALL 10~100 Series Internet Security Gateway 11-2 NetBIOS Filter Commands This command gives a read-only list of the current NetBIOS filter mode

Seite 66 - 10-8 Firewall Commands

ZyWALL 10~100 Series Internet Security Gateway NetBIOS Filter Commands 11-3 Chart 11-1 NetBIOS Filter Default Settings NAME DESCRIPTION EXAMPLE WAN

Seite 67 - NetBIOS Filter Commands

ZyWALL 10~100 Series Internet Security Gateway Table of Contents vii Table of Contents Copyright...

Seite 68

ZyWALL 10~100 Series Internet Security Gateway 11-4 NetBIOS Filter Commands <on|off> = For types 0 and 1, use on to enable the filter and b

Seite 69 - NetBIOS Filter Configuration

ZyWALL 10~100 Series Internet Security Gateway Boot Commands 12-1 Chapter 12 Boot Commands The BootModule AT commands execute from within the route

Seite 70

ZyWALL 10~100 Series Internet Security Gateway 12-2 Boot Commands Diagram 12-2 Boot Module Commands AT just answer OK ATHE pr

Seite 71 - Boot Commands

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-1 Chapter 13 Log Descriptions Chart 13-1 System Error Logs LOG MESSAGE DESCRIP

Seite 72

ZyWALL 10~100 Series Internet Security Gateway 13-2 Log Descriptions Chart 13-2 System Maintenance Logs TELNET Login Fail Someone has failed to log

Seite 73 - Log Descriptions

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-3 Chart 13-5 Attack Logs LOG MESSAGE DESCRIPTION attack IGMP The firewall detec

Seite 74

ZyWALL 10~100 Series Internet Security Gateway 13-4 Log Descriptions Chart 13-5 Attack Logs LOG MESSAGE DESCRIPTION syn flood TCP The firewall dete

Seite 75

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-5 Chart 13-6 Access Logs LOG MESSAGE DESCRIPTION Firewall default policy: TCP (

Seite 76

ZyWALL 10~100 Series Internet Security Gateway 13-6 Log Descriptions Chart 13-6 Access Logs LOG MESSAGE DESCRIPTION Firewall rule match: IGMP (set:

Seite 77

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-7 Chart 13-6 Access Logs LOG MESSAGE DESCRIPTION Firewall rule NOT match: OSPF

Seite 78

ZyWALL 10~100 Series Internet Security Gateway viii Table of Contents Index ...

Seite 79

ZyWALL 10~100 Series Internet Security Gateway 13-8 Log Descriptions Chart 13-6 Access Logs LOG MESSAGE DESCRIPTION Filter match DROP <set %d/ru

Seite 80

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-9 Chart 13-6 Access Logs LOG MESSAGE DESCRIPTION Firewall sent TCP reset packet

Seite 81

ZyWALL 10~100 Series Internet Security Gateway 13-10 Log Descriptions Chart 13-7 ACL Setting Notes ACL SET NUMBER DIRECTION DESCRIPTION 9 DMZ to DMZ

Seite 82

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-11 Chart 13-8 ICMP Notes TYPE CODE DESCRIPTION 0 Echo message 11 Time Exceede

Seite 83 - VPN/IPSec logs

ZyWALL 10~100 Series Internet Security Gateway 13-12 Log Descriptions Diagram 13-1 Example VPN Initiator IPSec Log VPN Responder IPSec Log The foll

Seite 84 - VPN Responder IPSec Log

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-13 The following table shows sample log messages during IKE key exchange. Char

Seite 85 - Log Descriptions 13-13

ZyWALL 10~100 Series Internet Security Gateway 13-14 Log Descriptions Chart 13-10 Sample IKE Key Exchange Logs LOG MESSAGE DESCRIPTION !! Remote IP

Seite 86

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-15 Chart 13-10 Sample IKE Key Exchange Logs LOG MESSAGE DESCRIPTION vs. My Loca

Seite 87

ZyWALL 10~100 Series Internet Security Gateway 13-16 Log Descriptions The following table shows RFC-2408 ISAKMP payload types that the log displays

Seite 88

ZyWALL 10~100 Series Internet Security Gateway Log Descriptions 13-17 Log Commands Go to the command interpreter interface (the Command Interpreter

Seite 89 - Log Commands

ZyWALL 10~100 Series Internet Security Gateway List of Diagrams ix List of Diagrams Diagram 2-1 Ideal Setup ...

Seite 90 - Log Command Example

ZyWALL 10~100 Series Internet Security Gateway 13-2 Log Descriptions Use the sys logs display [log category] command to show the logs in an individu

Seite 91 - Protection

ZyWALL 10~100 Series Internet Security Gateway Brute-Force Password Guessing Protection 14-1 Chapter 14 Brute-Force Password Guessing Protection Th

Seite 93 - Part III:

Index III Part III: Index This part provides an Index of key terms.

Seite 95

ZyWALL 10~100 Series Internet Security Gateway Index A Index A Ad-hoc Configuration ... 4-2 Alternative Subnet M

Seite 96

ZyWALL 10~100 Series Internet Security Gateway B Index Infrastructure Configuration ....... 4-3 IP Addressing ......

Kommentare zu diesen Handbüchern

Keine Kommentare