Specifications

Configure Security
36 Cox Business Internet Gateway Admin Guide
Section
Field Description
Firewall
SPI Firewall Protection. Stateful firewall (which is any firewall
that performs stateful packet inspection (SPI) or stateful
inspection) is a firewall that tracks the state of network
connections; e.g., TCP streams, UDP communication that travel
across it. The firewall is programmed to distinguish legitimate
packets for different types of connections. Only packets that
match a known active connection are allowed by the firewall;
others are rejected.
Select the desired option:
Off (factory default). No ports are restricted and SPI is “off.”
Low. No ports are restricted and SPI is on.”
Medium. The following ports are allowed and SPI is on”:
5190, 546, 547, 53, 989, 990, 80, 8080, 443, 143, 993, 4500,
123, 110, 995, 1812, 25, 22, 465, 1725, 1200, 992, 3074,
3724, 5050
High. The following ports are allowed and SPI is on.” 53,
80, 443, 993, 4500, 123, 995, 22, 25, 465
Cox Business VoiceManager Toolbar or Receptionist Console
application users must set the gateway firewall to Low to
achieve full functionality.
IPv6 Firewall Protection.
Off
On (factory default)
Filters
Block fragmented IP packets. Enables/disables filtering of
fragmented IP packets. This feature helps protect your private
local network from Internet based denial of service attacks.
Block Port Scan Detection. Enables/disables the gateway
from responding to Internet based port scans. This feature is
designed to protect your private local network from Internet
based hackers who attempt to gain unsolicited access your
network by detecting open IP ports.
Block IP Flood Detection. Blocks malicious devices that
attempt to flood devices or networks with illegal broadcast
packets. Also referred to as “broadcast storm.
Note: This is the factory default option.
Block WAN Requests
Block Anonymous Internet Requests. Enable this feature to
keep your network from being “pinged or detected by other
Internet users. It also hides your network ports. Both make it
more difficult for outside users to enter your network.
Note: This is the factory default option.