Quick Reference Guide

ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
ix
v1.0, January 2010
Chapter 5
Firewall Security and Content Filtering
About Firewall Security and Content Filtering ................................................................5-1
Using Rules & Services to Block or Allow Traffic ............................................................5-2
Services-Based Rules ..............................................................................................5-2
Viewing the Firewall Rules .......................................................................................5-7
Order of Precedence for Rules ................................................................................5-7
Setting the Outbound Policy .....................................................................................5-7
Creating a LAN WAN Outbound Services Rule .......................................................5-8
Creating a LAN WAN Inbound Services Rule ..........................................................5-9
Modifying Rules ......................................................................................................5-10
Inbound Rules Examples .......................................................................................5-11
Outbound Rules Example ......................................................................................5-14
Configuring Other Firewall Features .............................................................................5-14
Attack Checks ........................................................................................................5-14
Configuring Session Limits .....................................................................................5-17
Managing the Application Level Gateway for SIP Sessions ..................................5-18
Creating Services, QoS Profiles, and Bandwidth Profiles ............................................5-19
Adding Customized Services .................................................................................5-19
Setting Quality of Service (QoS) Priorities .............................................................5-21
Creating Bandwidth Profiles ...................................................................................5-21
Setting Schedules to Block or Allow Specific Traffic .....................................................5-24
Blocking Internet Sites (Content Filtering) ....................................................................5-25
Enabling Source MAC Filtering (Address Filtering) ......................................................5-28
Configuring IP/MAC Address Binding ...........................................................................5-29
Configuring Port Triggering ...........................................................................................5-31
Configuring UPnP (Universal Plug and Play) ...............................................................5-34
E-Mail Notifications of Event Logs and Alerts ...............................................................5-35
Administrator Tips .........................................................................................................5-36
Chapter 6
Virtual Private Networking Using IPsec
Using the VPN Wizard for Client and Gateway Configurations ......................................6-1
Creating Gateway to Gateway VPN Tunnels with the Wizard ........................................6-2
Creating a Client to Gateway VPN Tunnel with the Wizard ............................................6-5
Creating a VPN Client to VPN Firewall Connection .......................................................6-6