Chapter 43 System

43.9.1 Configuring FTP

To change your ZyWALL’s FTP settings, click System > FTP tab. The screen appears as shown. Use this screen to specify from which zones FTP can be used to access the ZyWALL. You can also specify from which IP addresses the access can come.

Figure 521 System > FTP

The following table describes the labels in this screen.

Table 242 System > FTP

LABEL

DESCRIPTION

Enable

Select the check box to allow or disallow the computer with the IP address that

 

matches the IP address(es) in the Service Control table to access the ZyWALL

 

using this service.

 

 

TLS required

Select the check box to use FTP over TLS (Transport Layer Security) to encrypt

 

communication.

 

This implements TLS as a security mechanism to secure FTP clients and/or

 

servers.

 

 

Server Port

You may change the server port number for a service if needed, however you must

 

use the same port number in order to use that service for remote management.

 

 

Server

Select the certificate whose corresponding private key is to be used to identify the

Certificate

ZyWALL for FTP connections. You must have certificates already configured in the

 

My Certificates screen (Click My Certificates and see Chapter 41 on page 639 for

 

details).

 

 

Service Control

This specifies from which computers you can access which ZyWALL zones.

 

 

#

This the index number of the service control rule.

 

The entry with a hyphen (-) instead of a number is the ZyWALL’s (non-configurable)

 

default policy. The ZyWALL applies this to traffic that does not match any other

 

configured rule. It is not an editable rule. To apply other behavior, configure a rule

 

that traffic will match so the ZyWALL will not have to use the default policy.

 

 

Zone

This is the zone on the ZyWALL the user is allowed or denied to access.

 

 

Address

This is the object name of the IP address(es) with which the computer is allowed or

 

denied to access.

 

 

Action

This displays whether the computer with the IP address specified above can access

 

the ZyWALL zone(s) configured in the Zone field (Accept) or not (Deny).

 

 

 

695

ZyWALL USG 100/200 Series User’s Guide