Motorola 556315-005-00 用户手册

下载
页码 86
7 • Firewall Pages 
52 
  
 
Firewall Pages
 
The SBG901 Firewall Pages allow you to configure the SBG901 firewall filters and 
firewall alert notifications. The SBG901 firewall protects the SBG901 LAN from 
undesired attacks and other intrusions from the Internet. It provides an advanced, 
integrated stateful-inspection firewall supporting intrusion detection, session tracking, 
and denial-of-service attack prevention. The firewall: 
• 
Maintains state data for every TCP/IP session on the OSI network and transport 
layers. 
• 
Monitors all incoming and outgoing packets, applies the firewall policy to each one, 
and screens for improper packets and intrusion attempts. 
• 
Provides comprehensive logging for all: 
• 
User authentications 
• 
Rejected internal and external connection requests 
• 
Session creation and termination 
• 
Outside attacks (intrusion detection) 
You can configure the firewall filters to set rules for port usage. For information about 
choosing a predefined firewall policy template, see the Firewall Pages. 
You can click any Firewall submenu option to view or change the firewall configuration 
information for that option. 
For information about how the firewall can affect gaming, see 
The predefined policies provide outbound Internet access for computers on the SBG901 
LAN. The SBG901 firewall uses
 to allow inbound responses when 
there already is an outbound session running that corresponds to the data flow. For 
example, if you use a web browser, outbound HTTP connections are permitted on port 
80. Inbound responses from the Internet are allowed because an outbound session is 
established. 
When required, you can configure the SBG901 firewall to allow inbound packets without 
first establishing an outbound session. You also need to configure a port forwarding 
entry on the 
 or a DMZ client on the