beautypg.com

Figure 112 firewall: general, Table 76 firewall: general – ZyXEL Communications 802.11g Wireless ADSL2+ 4-port VoIP IAD P-2602HWNLI User Manual

Page 217

background image

P-2602HWNLI User’s Guide

Chapter 14 Firewall Configuration

217

Figure 112 Firewall: General

The following table describes the labels in this screen.

Table 76 Firewall: General

LABEL

DESCRIPTION

Active Firewall

Select this check box to activate the firewall. The ZyXEL Device performs access

control and protects against Denial of Service (DoS) attacks when the firewall is

activated.

Bypass Triangle

Route

Select this check box to have the ZyXEL Device firewall permit the use of triangle

route topology on the network.

Note: Allowing asymmetrical routes may let traffic from the WAN go

directly to a LAN computer without passing through the
router. See

Section 14.5 on page 214

for more on triangle

route topology and how to deal with this problem.

Packet Direction

This is the direction of travel of packets (LAN to LAN / Router, LAN to WAN,

WAN to WAN / Router, WAN to LAN).
Firewall rules are grouped based on the direction of travel of packets to which they

apply. For example, LAN to LAN / Router means packets traveling from a

computer/subnet on the LAN to either another computer/subnet on the LAN

interface of the ZyXEL Device or the ZyXEL Device itself.

Default Action

Use the drop-down list boxes to select the default action that the firewall is to take

on packets that are traveling in the selected direction and do not match any of the

firewall rules.
Select Drop to silently discard the packets without sending a TCP reset packet or

an ICMP destination-unreachable message to the sender.
Select Reject to deny the packets and send a TCP reset packet (for a TCP packet)

or an ICMP destination-unreachable message (for a UDP packet) to the sender.
Select Permit to allow the passage of the packets.

Log

Select the check box to create a log (when the above action is taken) for packets

that are traveling in the selected direction and do not match any of your customized

rules.