Zyxel P-791R v2 Рекомендации по настройке онлайн [10/98] 154425

Zyxel P-791R v2 Рекомендации по настройке онлайн [10/98] 154425
P-791R v2 Support Notes
Server 2 IP<--->IGA1
14. How many network users can the SUA/NAT support?
The P-791R v2 does not limit the number of the users but the number of the
NAT sessions. The P-791R v2 supports 2048 sessions that you can use the 'ip
nat session' command in CLI to see. You can also use ‘ip nat hashTable
wanif0’ to view the current active NAT sessions.Or you can check it in below
WEB Configurator.
15. What are Device filters and Protocol filters?
In ZyNOS, the filters have been separated into two groups. One group is called
'device filter group', and the other is called 'protocol filter group'. Generic
filters belong to the 'device filter group', TCP/IP and IPX filters belong to the
'protocol filter group'. You can configure the filter rule in SMT.
Note: In ZyNOS, you can not mix different filter groups in the same filter
set.
16. How can I protect against IP spoofing attacks?
The P-791R v2's filter sets provide a means to protect against IP spoofing
attacks. The basic scheme is as follows:
For the input data filter:
Deny packets from the outside that claim to be from the inside
Allow everything that is not spoofing us
Filter rule setup:
Filter type =TCP/IP Filter Rule
Active =Yes
Source IP Addr =a.b.c.d
10
All contents copyright © 2007 ZyXEL Communications Corporation.

Похожие устройства