Document version: V1.0
36
7.2
Firewall
7.2.1
ALG
Application Layer Gateway (ALG) is a software component that manages specific application
protocols such as Session Initiation Protocol (SIP) and File Transfer Protocol (FTP). The ALG acts as
an intermediary between the internet and an application server and allows or denies traffic of
certain types to the application server. It does this by intercepting and analyzing the specified
traffic, allocating resources, and defining dynamic policies to allow traffic to pass through.
To access the configuration page, log in to the web UI of the ONT and navigate to Services >
Firewall > ALG.
Parameter description
The File Transfer Protocol (FTP) is a standard network protocol used for the transfer of
computer files between a client and server on a computer network.
The users on LAN can share resources on the FTP server on WAN only when it is selected.
The Layer Two Tunneling Protocol (L2TP) is an extension of the Point-to-Point Tunneling
Protocol (PPTP) used by an Internet Service Provider (ISP) to enable the operation of a Virtual
Private Network (VPN) over the Internet.
If you select L2TP protocol when you create a VPN connection on your computer in the LAN
of the ONT, it takes effect only when this function is enabled.
The Internet Protocol Security (IPsec) is a secure network protocol suite that authenticates
and encrypts the packets of data to provide secure encrypted communication between two
computers over an IP network. It is used in Virtual Private Networks (VPNs).
If you select IPsec protocol when you create a VPN connection on your computer in the LAN
of the ONT, it takes effect only when this function is enabled.
The Point-to-Point Tunneling Protocol (PPTP) is an obsolete method for implementing virtual
private networks. PPTP has many well-known security issues.
If you select the PPTP protocol when you create a VPN connection on your computer in the
LAN of the ONT, it takes effect only when this function is enabled.
The Trivial File Transfer Protocol (TFTP) is a simple file transfer protocol that allows a client to
get a file from or put a file onto a remote host.