Cisco Systems EA3500 manual How to improve security using the built-in firewall, VPN Passthrough

Page 30

Linksys EA-Series

How to improve security using the built-in firewall

Why would I need to change my security settings? By default, the firewall settings in your router have been optimized for most home environments, so no changes are needed. The SPI (Stateful Packet Inspection) firewall is enabled by default. In addition, anonymous Internet requests and IDENT requests are filtered by default. All web filters are disabled, because enabling them may cause problems for sites that depend on ActiveX controls, Java, or cookies.

Changing firewall settings

To change your firewall settings:

1.Log into Cisco Connect Cloud. (See “How to configure your router” on page 11.

2.Under Router Settings, click Security. The Security page opens to the Firewall tab.

3.You can now change the following settings:

Tip

For more descriptions of each setting, click Help at the top of the screen.

Firewall: SPI firewall protection—This helps protect your local network from Internet threats. This option is enabled by default. On some router models, this setting is separated into IPv6 and IPv4 options so that each can be handled separately.

Caution

To help protect your network, you should keep this option enabled.

Setting Up: Advanced

VPN Passthrough:

••IPSec Passthrough IPSec (Internet Protocol Security) is a suite of protocols used to implement secure exchange of packets at the IP layer. The VPN clients on the local network can establish an IPSec VPN tunnel through the router. This option is enabled by default.

••PPTP Passthrough PPTP (Point-to-Point Tunneling Protocol) allows the PPP (Point-to-Point Protocol) to be tunneled through an IP network. The VPN clients on the local network can establish a PPTP VPN tunnel through the router. This option is enabled by default.

••L2TP Passthrough L2TP (Layer 2 Tunneling Protocol) enables point-to-point sessions using the Internet on the Layer 2 level. The VPN clients on the local network can establish an L2TP VPN tunnel through the router. This option is enabled by default.

Internet filters:

••Filter anonymous Internet requests—This filter blocks Internet requests from unknown sources such as ping requests. This option is enabled by default.

••Filter multicast—Multicasting allows a single transmission to simultaneously reach specific recipients within your local network. Select this option to block multicasting. This option is disabled by default.

••Filter Internet NAT redirection—This filter prevents a local computer from using a URL or Internet IP address to access the local server. Select this option to enable the filter. This option is disabled by default. On some router models, this setting applies to IPv4 Internet only.

••Filter ident (Port 133)—This filter prevents port 133 from being scanned by devices from the Internet. This option is enabled by default.

4.Click Save to save your changes.

27

Image 30
Contents User Guide Contents Specifications Product Overview Package contentsFeatures EA2700Port activity indicator Back viewBottom view EA3500 SpeedBoostPort activity indicators Product Overview EA4500 Built-in USB port and Dlna media serverTop view Product Overview Where to find more help Setting Up BasicsHow to create a home network What is a network?How to install your router Setting Up BasicsHow to configure your router How to connect to Cisco Connect CloudHow to disable remote access How to connect directly to your router How to improve your wireless connection speedTo change your router’s name and password How to change your network’s name and passwordHow to change your router’s local access password Under Router Settings, click WirelessTo set your router’s time zone How to test your Internet connection speedHow to change your router’s time zone To test your Internet connection speedHow to connect a USB printer How to connect devices to your networkHow to connect a computer to your network To connect a computer to your networkHow to connect other devices How to manually connect a network deviceHow to connect a network device using Wi-Fi Protected Setup How to view device details To view network device detailsHow to set up parental controls How to set parental controlsTo set parental controls How to configure your guest network Under Block specific sites, click AddHow to back up your router configuration To set up guest access to your networkHow to customize Cisco Connect Cloud Using widgetsCustomizing the Device List How to manually set up your Internet connection Setting Up AdvancedHow to manually set up your router How to configure basic Internet connection settingsIPv6 Internet connection settings To manually configure your router’s IPv6 settingsHow to get the most out of your dual- band router To reconfigure your wireless networkHow to control access to your network Wireless-N Only 802.11n onlyAuto 20 MHz or 40 Mhz MHz Only Linksys EA-Series To change your firewall settings How to improve security using the built-in firewallChanging firewall settings VPN PassthroughTo set IPv6 firewall settings How to set up the Dhcp server on your routerChanging IPv6 firewall settings To configure your router’s Dhcp server settingsHow to set up Dhcp reservation To configure Dhcp reservationHow to access your network on the Internet To set up DdnsHappyBunny.linksysnet.com1024 Click the Internet Settings tab How to clone a MAC addressHow to connect to your corporate office using a VPN To change your VPN passthrough settingsHow to optimize your router for gaming and voice To configure media prioritizationHow to enable Voice over IP on your network Set the maximum Upstream BandwidthHow to configure UPnP To configure the router for VoIPTo configure UPnP How to use a router as an access point To view your new router’s settingsHow to put your new router behind an existing router To add your router to your existing wireless networkTo add your router to an existing router or gateway To share an Internet connection To add another router to share an Internet connectionTips To use their DNSTo set up a device in the DMZ How to expose a device to the InternetTo extend your network or add wireless capabilities To extend your networkSetting Up Advanced Using an External Drive How to attach a USB driveOverview How to use secured folder access How to set up authorized users and shared foldersTo enable access to shared folders How to access shared folders To access shared folders while on your networkClick Add User How to set up your router as a media server To configure your router as a media serverHow to connect your UPnP device to the media server To connect an UPnP device to your router’s media serverHow to remotely access storage To set up the FTP serverLinksys EA-Series To set up single port forwarding How to set up port forwardingHow to set up port forwarding for a single port Port Forwarding and Port TriggeringHow to set up port forwarding for multiple ports How to set up port forwarding for a range of portsTo set up single port forwarding for multiple ports How to set up port range triggering for online gaming To set up port range forwardingClick Add a new Port Range Forwarding Click Add a new Port Range Triggering Under Router Settings, click Troubleshooting How to back up and restore your router configurationTo back up your router configuration To restore your router configurationTo upgrade the router’s firmware How to upgrade the router’s firmwareHow to restore factory defaults Under Firmware Update, click Check for UpdatesHow to check the status of your router Under Factory reset, click ResetHow to disable the Ethernet port status lights How to test your Internet connectionTo disable the lights How to configure and use logs To enable and view logsYour router was not successfully set up TroubleshootingDuring setup Windows XP Service Pack updateTo fix the problem To fix the problem on Windows computersClick the wireless network BronzeEagle in the example To reboot your router using the power cord After setupRebooting your router To reboot your router using Cisco Connect CloudYou cannot access Cisco Connect Cloud All other troubleshooting has been unsuccessfulCisco Connect Cloud does not open in your web browser Specifications Linksys EA2700Environmental Specifications Linksys EA3500Linksys EA4500 3425-00125A