24
Ally IP1000 Factory Default Configuration
Configuration
Parameter
Possible
Settings
Default Intrusion
Implication Mgmt.
Console
Page
AllyRTCfg
Option
ICMP
Destination
Unreachable
Policy
!
Discard All
!
Allow All
Discard All Discard ICMP Destination
Unreachable packets to prevent
certain Denial of Service (DoS)
attacks.
ICMP
Policy
-du
ICMP Port
Unreachable
Policy
!
Discard All
!
Allow All
Discard All Discard ICMP Port Unreachable
packets to prevent UDP Port
Scanning.
ICMP
Policy
-pu
Other IP Policy
!
Discard All
!
Allow All
Allow All
Select “Discard All” to discard all
“unknown” packet types, i.e.
packets that are not TCP, UDP, or
ICMP.
General
Filtering
Options
-au
-aa
ARP Policy
!
Discard All
!
Allow All
Allow All
Address Resolution Protocol (ARP)
is the protocol that converts IP
addresses to MAC addresses.
Typically, ARP traffic should be
allowed to pass through the Ally
IP1000.
Non-IP Non-ARP
Policy
!
Discard All
!
Allow All
Allow All
Select “Discard All” to discard
traffic that is not IP or ARP based.
General
Filtering
Options
-ut
Blacklist Time
Period
Any unsigned
32-bit
integers
3600
seconds
(1 hour)
This parameter specifies the
amount of time an IP address
suspected of TCP Port Scanning or
DNS Tunneling will remain on the
dynamic blacklist.
Blacklist -bt
Management
Adapter
Outbound
Connections
!
Block
!
Allow
Block For
additional security the
Management Adapter is, by
default, not allowed to establish
outbound TCP connections. There
are no applications installed on the
Ally IP1000 that attempt to
establish outbound connections.
Network
Adapter
Config.
-bm
Summary of Contents for ALLY IP1000
Page 1: ...User Guide...
Page 34: ......