ZyWALL 10 Internet Security Gateway

11.4 Remote Management Setup

Telnet and FTP do not support encryption, so for very strong security both services should be shut down. This is done in Menu 24.11 - Remote Management Control. Enter 11 from menu 24 to bring up this menu. All Telnet and FTP activity, both LAN and WAN may be disabled by selecting No (press the [SPACE BAR] to select No) in the two fields in this menu. If you just wish to block certain users from using these activities, then please use filtering – see menu 21.1.

Menu 24.11 - Remote Management Control

FTP service active = Yes

Telnet service active = Yes

Secured Client IP= 0.0.0.0

Press ENTER to Confirm or ESC to Cancel:

Press Space Bar to Toggle.

Figure 11-8 Menu 24.11 — Remote Management Control

Remote management is only allowed from one single IP host.

Table 11-4 Menu 24.11 — Remote Management Control

FIELD

DESCRIPTION

EXAMPLE

FTP service active

Press [SPACE BAR] to select No and press [ENTER] to disable all

No

 

FTP activity (both LAN and WAN).

 

Telnet service

Press [SPACE BAR] to select No and press [ENTER] to disable all

No

active

Telnet activity (both LAN and WAN).

 

 

 

 

Secured Client IP

The default value for Secured Client IP is 0.0.0.0, which means

0.0.0.0

 

you don’t care which host is trying to telnet. If you enter an IP in

 

 

this field, the ZyWALL will check if the client IP matches the value

 

 

here when a Telnet session is up. If it does not match, the ZyWALL

 

 

will disconnect the session immediately. If the Telnet service

 

 

active field is disabled (No) then this field is not applicable (N/A).

 

System Maintenance & Information

11-7