SBG3500-N Series User’s Guide
251
CHAPTER 17
Firewall
17.1 Overview
This chapter shows you how to enable and configure the SBG3500-N Series’s security settings. Use
the firewall to protect your SBG3500-N Series and network from attacks by hackers on the Internet
and control access to it. By default the firewall:
• allows traffic that originates from your LAN computers to go to all other networks.
• blocks traffic that originates on other networks from going to the LAN.
The following figure illustrates the default firewall action. User A can initiate an IM (Instant
Messaging) session from the LAN to the WAN (1). Return traffic for this session is also allowed (2).
However other traffic initiated from the WAN is blocked (3 and 4).
Figure 121 Default Firewall Action
17.1.1 What You Can Do in this Chapter
•Use the General screen to activate the firewall feature on the SBG3500-N Series (Section 17.2
on page 253).
•Use the DoS screen to activate protection against Denial of Service (DoS) attacks (Section 17.3
on page 253).
•Use the Service screen to add or remove predefined Internet services and configure firewall
rules (Section 17.4 on page 254).
•Use the Access Control screen to view and configure incoming/outgoing filtering rules (Section
17.5 on page 257).
•Use the Zone Control screen to configure the security level of the firewall based on the direction
of travel of packets to which they apply (Section 17.6 on page 260)