ZyXEL Communications 792H manual Rule Summary, Block, Forward or None

Models: 792H

1 428
Download 428 pages 12.67 Kb
Page 148
Image 148

Prestige 792H G.SHDSL Router

Table 10-1 Firewall Logs

LABEL

DESCRIPTION

EXAMPLE

 

 

 

Reason

This field states the reason for the log; i.e., was the rule

not match

 

matched, not matched, or was there an attack. The set and

<1,01> dest IP

 

rule coordinates (<X, Y> where X=1,2; Y=00~10) follow with a

 

 

 

simple explanation. There are two policy sets; set 1 (X = 1) is

This means this packet

 

for LAN to WAN rules and set 2 (X = 2) for WAN to LAN rules.

does not match the

 

Y represents the rule in the set. You can configure up to 10

destination IP address in

 

rules in any set (Y = 01 to 10). Rule number 00 is the default

set 1, rule 1. Other

 

rule.

reasons (instead of dest

 

 

IP) are src IP, dest port,

 

 

src port and protocol.

 

This is a log for a DoS attack.

attack land, ip spoofing,

 

 

icmp echo, icmp

 

 

vulnerability, NetBIOS,

 

 

smtp illegal command,

 

 

traceroute, teardrop, or

 

 

syn flood. Chapter 8 has

 

 

more detailed discussion

 

 

of what these attacks

 

 

mean.

Action

This field displays whether the packet was blocked (i.e.,

Block, Forward or None

 

silently discarded), forwarded or neither (Block, Forward or

 

 

None). “None” means that no action is dictated by this rule.

 

Back

Click Back to return to the previous screen.

 

 

 

 

Previous

Click Previous Page to view more logs.

 

Page

 

 

Refresh

Click Refresh to update the report display. The report also refreshes automatically when

 

you close and reopen the screen.

 

Clear

Click Clear to delete all the logs.

 

 

 

 

Next Page

Click Next Page to view more logs.

 

 

 

 

10.5 Rule Summary

The fields in the Rule Summary screens are the same for Local Network and Internet,

so the discussion below refers to both.

10-6

Creating Custom Rules

Page 148
Image 148
ZyXEL Communications 792H manual Rule Summary, Block, Forward or None