ZyXEL 35 Guia Do Utilizador

Página de 335
 
 
ZyWALL 35 Support Notes 
 
 
All contents copyright (c) 2006 ZyXEL Communications Corporation.   
247
capable to stop virus from penetrate ZyWALL 5 UTM. 
 
In addition, the ZyWALL 5 UTM has a stream based AV scan engine that will scan all traffics as them pass 
through ZyWALL. This stream based AV scan engine can precisely detect virus/worms and then destroy 
these infected files before they reach intranet hosts.   
TIPS: Anti-Virus service in ZyWALL 5 UTM can detect and destroy files that are infected with virus/worms, 
but it cannot stop network DoS and DDoS attack. 
 
1.2 IDP + AV is a perfect combination 
   
  ZyWALL 5 UTM IDP + AV service is ultimate tool to guard your network from most types of attacks 
coming from any networks. Not only will ZyWALL 5 UTM stop network attacks using IDP service, it will 
also scan, detect and destroy files that are infected with virus/worms using AV service. Result in your 
network stability and virus/worms free. Following is an example on how to configure IDP/AV service on 
your ZyWALL 5 UTM to fulfill this purpose. 
   
1.2.1 Setup the IDP service to prevent the attacks:   
1.  In IDP->Generalcheck the Enable Intrusion Detection and Prevention check box to enable IDP 
function. 
2.  In the traffic direction matrix, check all the send to LAN and DMZ’s check boxes to have the inbound 
traffic to LAN and DMZ interfaces be protected. 
3.  Click on the Apply button to save the above settings. 
 
 
 
1.2.2 Setup the ANTI-VIRUS service to inspect if the receiving file infected: 
1.  In ANTI-VIRUS->General, check the Enable Anti-Virus to enable the AV function and enable Zip