Symantec 360R Administration Guide - Page 76

Configuring advanced options, Enabling the IDENT port

Page 76 highlights

76 Network traffic control Configuring advanced options 2 In the right pane, on the Special Application tab, on the Special Application drop-down list, select an existing special application. 3 Make the changes to the special applications fields. 4 Click Update. The configured rule is displayed in the Special Application List. To delete an special application 1 In the SGMI, in the left pane, click Firewall. 2 In the right pane, on the Special Applications tab, on the Application drop- down list, select an existing special application. 3 Click Delete. Configuring advanced options The Symantec Gateway Security 300 Series has several advanced firewall options for special circumstances. Enabling the IDENT port Queries to the IDENT port (113) normally result in the host name and company name information being returned. However, this service poses a security risk since attackers can use this information to hone in their attack methodology. By default, the appliance sets all ports to stealth mode. This configures a computer to appear invisible to those outside of the network. Some servers (like a certain email or MIRC servers) use the IDENT port of the system accessing them. You can configure the appliance to enable the IDENT port. Enabling this setting makes port 113 closed (not open) and not stealth. You should enable this setting only if there are problems accessing a server (server time-outs). Note: If you experience time-outs when using your mail (SMTP) service, enabling the IDENT port may correct this problem.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218

76
Network traffic control
Configuring advanced options
2
In the right pane, on the Special Application tab, on the Special Application
drop-down list, select an existing special application.
3
Make the changes to the special applications fields.
4
Click
Update
.
The configured rule is displayed in the Special Application List.
To delete an special application
1
In the SGMI, in the left pane, click
Firewall
.
2
In the right pane, on the Special Applications tab, on the Application drop-
down list, select an existing special application.
3
Click
Delete
.
Configuring advanced options
The Symantec Gateway Security 300 Series has several advanced firewall
options for special circumstances.
Enabling the IDENT port
Queries to the IDENT port (113) normally result in the host name and company
name information being returned. However, this service poses a security risk
since attackers can use this information to hone in their attack methodology. By
default, the appliance sets all ports to stealth mode. This configures a computer
to appear invisible to those outside of the network. Some servers (like a certain
email or MIRC servers) use the IDENT port of the system accessing them.
You can configure the appliance to enable the IDENT port. Enabling this setting
makes port 113 closed (not open) and not stealth. You should enable this setting
only if there are problems accessing a server (server time-outs).
Note:
If you experience time-outs when using your mail (SMTP) service,
enabling the IDENT port may correct this problem.