Performing global tcp proxy setting, Enabling tcp proxy for a security zone, Adding a protected ip address entry – H3C Technologies H3C SecPath F1000-E User Manual
Page 646
4
Performing Global TCP Proxy Setting
Select Intrusion Detection > TCP Proxy > TCP Proxy Configuration from the navigation tree to
enter the page shown in
. The Global Configuration area allows you to perform global
setting for TCP proxy.
Figure 5 TCP proxy configuration
describes the global configuration items of TCP proxy.
Table 2 Global configuration items of TCP proxy
Item
Description
Unidirection/Bidirediction
Set the global proxy mode of TCP proxy.
TCP proxy configuration task list
Enabling TCP Proxy for a Security Zone
Select Intrusion Detection > TCP Proxy > TCP Proxy Configuration from the navigation tree to
enter the page shown in
. You can enable/disable the TCP proxy feature for a security zone in
the Zone Configuration area.
•
The icon indicates that the TCP proxy feature is disabled for the corresponding security zone. You
can click the Enable button beside the icon to enable the feature.
•
The icon indicates that the TCP proxy feature is enabled for the corresponding security zone. You
can click the Disable button beside the icon to disable the feature.
TCP proxy configuration task list
Adding a Protected IP Address Entry
Select Intrusion Detection > TCP Proxy > Protected IP Configuration to enter the page shown
in
, which lists information about protected IP address entries and the relative statistics. Click
Add to enter the page for configuring a protected IP address entry, as shown in
.