D-Link DFL-80 User Manual - Page 132

Schedule, Service, Service Group, System Configuration

Page 132 highlights

Schedule Schedule is used to set up different time intervals conveying different policies. A policy only works in specified time interval, and is automatically disabled outside the specified time interval. A specific schedule can be set to repeat every week or just happen once. Service TCP protocol and UDP protocol provided different services. Each service has a TCP port number and a UDP port number, such as TELNET(23), FTP(21), SMTP(25), POP3(110), etc. This system supports two kinds of services: standard services and user defined services. The most popular TCP and UDP services are already defined in standard services table, and can not be modified or deleted. Users can setup their own services with proper TCP and UDP port numbers if necessary. When setting up a user defined service, the client's port number range is 1024:65535, and server's is 0:1023. Service Group Similar to address groups, mangers can create new service groups in [Service Group] option of [Service] menu and assign desired services into groups. Using address group and service group can greatly simply the policy creating process. If there are ten different IP addresses that access five different server services, such as HTTP, FTP, SMTP, POP3 and TELNET. Without the concept of address group and service group, (10*5)= 50 policies are needed to be created. However, with address group in source/destination address and service group name in service option when setting up a policy, only one policy is needed instead of 50. System Configuration The system configuration file stores system administrator's name and password, IP addresses of Firewall's network interfaces, address table, service table, virtual servers' IP addresses and policies. When the configuration process is completed, system administrator can download the configuration file into local disc as a backup. System Administrators can overwrite the firewall's configuration file with the one stored in disc or restore the configuration to its default factory settings. 132

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147

132
Schedule
Schedule is used to set up different time intervals conveying different policies.
A policy only works in specified time interval, and is automatically disabled
outside the specified time interval.
A specific schedule can be set to repeat
every week or just happen once.
Service
TCP protocol and UDP protocol provided different services. Each service
has a TCP port number and a UDP port number, such as TELNET(23),
FTP(21), SMTP(25), POP3(110), etc. This system supports two kinds of
services: standard services and user defined services. The most popular
TCP and UDP services are already defined in standard services table, and
can not be modified or deleted. Users can setup their own services with
proper TCP and UDP port numbers if necessary. When setting up a user
defined service, the client’s port number range is 1024:65535, and server’s is
0:1023.
Service Group
Similar to address groups, mangers can create new service groups in [Service
Group] option of [Service] menu and assign desired services into groups.
Using address group and service group can greatly simply the policy creating
process. If there are ten different IP addresses that access five different server
services, such as HTTP, FTP, SMTP, POP3 and TELNET.
Without the concept
of address group and service group, (10*5)= 50 policies are needed to be
created.
However, with address group in source/destination address and service
group name in service option when setting up a policy, only one policy is needed
instead of 50.
System Configuration
The system configuration file stores system administrator’s name and password,
IP addresses of Firewall’s network interfaces, address table, service table, virtual
servers’ IP addresses and policies. When the configuration process is
completed, system administrator can download the configuration file into local
disc as a backup. System Administrators can overwrite the firewall’s
configuration file with the one stored in disc or restore the configuration to its
default factory settings.