User manual

Chapter 4. The Firewall Menu
• Outbound LAN Traffic Options, page 40
• Outbound DMZ Traffic Options, page 42
• Inbound Traffic Options, page 44
• VPN Options, page 46
• VPN Users, page 51
• Web Content Filtering, page 52
• Anti-Virus, page 61
• IDP Options, page 64
• Schedules, page 67
The options in the Firewall menu allow the administrator to control and manage the features of the
DFL-160 that are specific to a firewall. A firewall, as the name suggests, is a capability that
provides a protective barrier against a range of potential threats that can be transported by the public
Internet towards sensitive internal networks.
Using the DFL-160 as a Firewall
The firewalling capabilities of NetDefendOS allow the administrator to impose various security
restrictions on the traffic flowing through the interfaces of the DFL-160. In summary, the
firewalling options are:
The types of traffic that are allowed to flow between interfaces can be specified and also in what
direction they are allowed to flow.
Secure VPN connections can be specified for traffic flowing through interfaces.
Policies can be set for the URLs to which web surfing is allowed.
Anti-Virus scanning can be enabled for file downloads.
Intrusion Detection and Prevention (IDP) can be enabled to search streams of traffic for threats
39