Chapter 13 Firewall
FMG3024-D10A / FMG3025-D10A Series User’s Guide
146
It is designed to protect against Denial of Service (DoS) attacks when activated. The Device's
purpose is to allow a private Local Area Network (LAN) to be securely connected to the Internet.
The Device can be used to prevent theft, destruction and modification of data, as well as log events,
which may be important to the security of your network.
The Device is installed between the LAN and a broadband modem connecting to the Internet. This
allows it to act as a secure gateway for all data passing between the Internet and the LAN.
The Device has one Ethernet WAN port and four Ethernet LAN ports, which are used to physically
separate the network into two areas.The WAN (Wide Area Network) port attaches to the broadband
(cable or DSL) modem to the Internet.
The LAN (Local Area Network) port attaches to a network of computers, which needs security from
the outside world. These computers will have access to Internet services such as e-mail, FTP and
the World Wide Web. However, "inbound access" is not allowed (by default) unless the remote host
is authorized to use a specific service.
ICMP
Internet Control Message Protocol (ICMP) is a message control and error-reporting protocol
between a host server and a gateway to the Internet. ICMP uses Internet Protocol (IP) datagrams,
but the messages are processed by the TCP/IP software and directly apparent to the application
user.
Finding Out More
See Section 13.6 on page 151 for advanced technical information on firewall.
13.2 The General Screen
Use this screen to enable or disable the Device’s firewall. Click Security > Firewall to open the
General screen.
Figure 69 Security > Firewall > General