PLANET UMG-2000 User Manual
Page 78
78
this feature to make the UMG-2000 Series respond to the ping request from
the Internet.
DMZ Server Address: Specifies the DMZ host IP address. The clients on the
outside network cannot connect to the servers in the private network which
are protected by the firewall. To solve this problem, a DMZ (demilitarized
zone) host is inserted between the company’s private network and the
public network. The DMZ host will be exposed to the Internet without
protection. Specify it only if you need a special Internet service or expose
one computer with no restriction.
PASSTHROUTH
This section lists all the settings of the firewall pass-through rules.
IPSec Passthrough: Enables or disables the “IPSEC Passthrough” feature.
Enable this feature to allow Internet Protocol Security (IPSEC)
pass-through.
PPTP Passthrough: Enables or disables the “PPTP Passthrough” feature.
Enable this feature to allow PPTP VPN pass-through.
L2TP Passthrough: Enables or disables the “L2TP Passthrough” feature.
DOS PREVENTION
This section lists all the settings of the firewall DoS prevention rules.
TCP SYN Flood: Enables or disables the “TCP SYN Flood” feature. Enable this
feature for protection from the TCP SYN flood attack.
UDP Flood: Enables or disables the “UDP Flood” feature. Enable this feature for
protection from the UDP SYN flood attack.
ICMP Flood: Enables or disables the “ICMP Flood” feature. Enable this feature
for protection from the ICMP SYN flood attack.
Ping of Death: Enables or disables the “Ping of Death” feature. Enable this
feature for protection from a “Ping to Death” attack.
Note:
A DMZ host will be exposed on the web without protection by a firewall. Assigning a DMZ
host may make other computers in the network vulnerable. When assigning a DMZ host,
you must take security into account and protect it if possible.