D-Link DFL-1000 [41/168] Services

D-Link DFL-1000 [41/168] Services
DFL-1000 User Manual
41
Adding an internal address group
Services
Use services to control the types of communication accepted or denied by the firewall. You can add any
of the predefined services to a policy. You can also create your own custom services and add services to
service groups.
This section describes:
Predefined services
Providing access to custom services
Grouping services
Predefined services
The DFL-1000 predefined firewall services are listed in DFL-1000 predefined services. You can add these
services to any policy.
DFL-1000 predefined services
Service name Description Protocol Port
ANY
Match connections on any port. A connection that uses any of the
predefined services is allowed through the firewall.
all all
GRE
Generic Routing Encapsulation. A protocol that allows an arbitrary network
protocol to be transmitted over any other arbitrary network protocol, by
encapsulating the packets of the protocol within GRE packets.
47
AH
Authentication Header. AH provides source host authentication and data
integrity, but not secrecy. This protocol is used for authentication by IPSec
remote gateways set to aggressive mode.
51
ESP
Encapsulating Security Payload. This service is used by manual key and
AutoIKE VPN tunnels for communicating encrypted data. AutoIKE key VPN
tunnels use ESP after establishing the tunnel using IKE.
50

Содержание

Скачать