20
Ally IP1000 Factory Default Configuration
Configuration
Parameter
Possible
Settings
Default Intrusion
Implication Mgmt.
Console
Page
AllyRTCfg
Option
Maximum
Number of
Outside-to-
Inside
Concurrent
Connections
Any unsigned
32-bit
integer
150
outside) and for requests received
on the Outside Adapter (outside-
to-inside).
Select the Address Authentication
mode "All Connections" for
maximum protection. This setting
authenticates the source IP
address in every connection
request received on the associated
interface.
The Address Authentication mode
may be set to "First Connection
per Session" to increase the speed
at which multi-connection sessions
are established. This setting is
especially useful when the
applications communicating
through the Ally create multiple
connections from a specific source
IP address to a single destination
IP address and port number, e.g.
web browsers.
The "Maximum Number of
Concurrent Connections" value is
only referenced in the "First
Connection per Session" mode.
This value places a limit on the
number of concurrent connections
that can exist between a specific
source IP address and a single
destination IP address and port
number.
TCP
Policy
-mco
Incomplete
Connection
Timeout
5 – 25
seconds
5
seconds
An "incomplete" connection is one
in which the TCP connection
establishment three-way
handshake process has not been
completed. The Incomplete
Connection Timeout value
indicates the amount of time the
Ally IP1000 will retain pending
connection information.
TCP
Policy
-ct
Summary of Contents for ALLY IP1000
Page 1: ...User Guide...
Page 34: ......