45D-Link DIR-635 User Manual
Section 3 - Configuration
SPI (Stateful Packet Inspection, also known as dynamic packet
ltering) helps to prevent cyber attacks by tracking more state per
session. It validates that the trafc passing through the session
conforms to the protocol.
Select one of the following for TCP and UDP ports:
Endpoint Independent - Any incoming trafc sent to an open port
will be forwarded to the application that opened the port. The port
will close if idle for 5 minutes.
Address Restricted - Incoming trafc must match the IP address
of the outgoing connection.
Address and Port Restriction - Incoming trafc must match the
IP address and port of the outgoing connection.
Enable this feature to protect your network from certain kinds of
spoong attacks.
If an application has trouble working from behind the router, you
can expose one computer to the Internet and run the application
on that computer.
Note: Placing a computer in the DMZ may expose that computer to
a variety of security risks. Use of this option is only recommended
as a last resort.
Specify the IP address of the computer on the LAN that you want to
have unrestricted Internet communication. If this computer obtains
it’s IP address automatically using DHCP, be sure to make a static
reservation on the Basic > DHCP page so that the IP address of the
DMZ machine does not change.
Enable SPI:
NAT Endpoint
Filtering:
Anti-SpoofChecking:
Enable DMZ Host:
DMZ IP Address:
Firewall Settings
A rewall protects your network from the outside world. The D-Link DIR-635 offers a rewall type functionality.