Netgear Netgar VPN FIrewall FVS336Gv2 Reference Manual
Here you can view all the pages of manual Netgear Netgar VPN FIrewall FVS336Gv2 Reference Manual. The Netgear manuals for Router are available online for free. You can easily download all the documents as PDF.
Page 261
Customize Firewall Protection 260 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 IPv6 LAN WAN Inbound Rule: Restrict RTelnet from a Single WAN User to a Single LAN User If you want to restrict incoming reverse Telnet (RTelnet) sessions from a single IPv6 WAN user to a single IPv6 LAN user, specify the initiating IPv6 WAN address and the receiving IPv6 LAN address. To restrict RTelnet traffic from a single WAN user to a single LAN user: 1. On your computer, launch an Internet browser. 2. In...
Page 262
Customize Firewall Protection 261 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 9. Enter the settings as described in the following table. 10. Click the Apply button. Your settings are saved. The new rule is added to the Inbound Services table on the LAN WAN Rules screen. Examples of Outbound Firewall Rules Outbound rules let you prevent users from using applications such as Instant Messenger, Real Audio, or other traffic that might be nonessential. The following sections provide examples...
Page 263
Customize Firewall Protection 262 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 IPv4 LAN WAN Outbound Rule: Block Instant Messenger If you want to block Instant Messenger usage by employees during specific hours such as working hours, you can create an outbound rule to block such an application from any internal IP address to any external address according to the schedule that you create. You can also enable the VPN firewall to log any attempt to use Instant Messenger during the blocked...
Page 264
Customize Firewall Protection 263 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 8. Enter the settings as described in the following table. 9. Click the Apply button. Your settings are saved. The new rule is added to the Outbound Services table on the LAN WAN Rules screen. SettingDescription Service From the menu, select AIM. Action From the menu, select BLOCK by schedule, otherwise allow. Select Schedule From the menu, select a schedule. For information about how to configure schedules, see...
Page 265
Customize Firewall Protection 264 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 IPv6 DMZ WAN Outbound Rule: Allow a Group of DMZ User to Access an FTP Site on the Internet If you want to allow a group of DMZ users to access a particular FTP site on the Internet during specific hours such as working hours, you can create an outbound rule to allow such traffic by specifying the IPv6 DMZ start and finish addresses and the IPv6 WAN address. You can also configure the QoS profile to maximize...
Page 266
Customize Firewall Protection 265 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 9. Enter the settings as described in the following table. 10. Click the Apply button. Your settings are saved. The new rule is added to the Outbound Services table on the DMZ WAN Rules screen. Configure Other Firewall Features The following sections provide information about other firewall features: •Manage Protection Against Common Network Attacks •Manage VPN Pass-Through SettingDescription Service From the...
Page 267
Customize Firewall Protection 266 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 •Set Limits for IPv4 Sessions •Manage Time-Out Periods for TCP, UDP, and ICMP Sessions •Manage Multicast Pass-Through •Manage the Application Level Gateway for SIP Sessions You can configure attack checks, set session limits, configure multicast pass-through, and manage the application level gateway (ALG) for SIP sessions. Manage Protection Against Common Network Attacks For IPv4 traffic, you can specify whether...
Page 268
Customize Firewall Protection 267 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 The Attack Checks screen displays the IPv4 settings. 7. Enter the settings as described in the following table. SettingDescription WAN Security Checks Respond to Ping on Internet PortsSelect the Respond to Ping on Internet Ports check box to enable the VPN firewall to respond to a ping from the Internet to its IPv4 address. A ping can be used as a diagnostic tool. Keep this check box cleared unless you have a...
Page 269
Customize Firewall Protection 268 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 8. Click the Apply button. Your settings are saved. Manage the Ping Settings for the IPv6 WAN Ports The following procedure describes how to manage a WAN security check for IPv6 traffic by specifying the ping settings for the WAN ports. By default, the VPN firewall does not allow pings on the IPv6 WAN ports. Keep this setting unless you have a specific reason to enable the VPN firewall to respond to a ping from...
Page 270
Customize Firewall Protection 269 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Security > Firewall >...