pcapdump, 72
diffie-hellman (see DH Groups)
diffserv, 451
Directed Broadcasts setting, 513
distance vector algorithms, 176
DMZ, 349
DNS, 144
dynamic lookup, 144
DNS black lists for Spam filtering, 263
documentation, 18
DoS attack (see denial of service)
downloading files with SCP, 46
DPD Expire Time (IPsec) setting, 429
DPD Keep Time (IPsec) setting, 429
DPD Metric (IPsec) setting, 429
drop all IP rule, 122
Drop IP rule, 125
Dropped Fragments setting, 528
DSCP, 451
in setting precedence, 458
DST End Date setting, 142
DST Offset setting, 142
DST Start Date setting, 142
Duplicated Fragment Data setting, 527
Duplicate Fragments setting, 528
dynamic balancing (in pipes), 464
Dynamic CAM Size setting, 224
dynamic DNS, 144
Dynamic L3C Size setting, 224
Dynamic Max Connections setting, 522
dynamic routing rules, 190, 191
OSPF action, 192
routing action, 192
DynDNS service, 144
E
Enable Sensors setting, 67
end of life procedures, 78
ESMTP extensions, 261
Ethernet interface, 95
changing IP addresses, 98
CLI command summary, 99
default gateway, 96
disabling, 101
enabling, 101
IP address, 96
logical/physical difference, 98
with DHCP, 96
evasion attack prevention, 324
events, 57
log message receivers, 58
log messages, 57
F
Failed Fragment Reassembly setting, 528
filetype download block/allow
in FTP ALG, 252
in HTTP ALG, 247
Flood Reboot Time setting, 532
folders
with IP rules, 126
with the address book, 84
Fragmented ICMP setting, 529
FTP ALG, 249
command restrictions, 251
connection restriction options, 251
control channel restrictions, 252
filetype checking, 252
hybrid mode, 250
server IP setup for passive, 258
virus scanning, 252
FwdFast IP rule, 125
exclusion from traffic shaping, 454
with multiplex rules, 201
G
Generic Router Encapsulation (see GRE)
Grace time setting, 162
gratuitous ARP generation, 159
Gratuitous ARP on fail setting, 159, 162
GRE, 107
additional checksum, 108
and IP rules, 109
setting up, 108
tunnel IP address advantages, 108
Grouping interval setting, 143
groups
configuration objects, 127
in authentication, 363
in pipes, 462
H
H.323 ALG, 280
HA (see high availability)
hardware monitoring, 67
availability, 67
heartbeats (see high availability)
high availability, 489
advanced settings, 502
cluster ID, 498
disabling heartbeat sending, 491
heartbeats, 491
issues, 498
making OSPF work, 498
mechanisms, 491
physical interconnection, 489
resynchronizing units, 493
setting up, 494
sync failure, 492
unique shared MAC, 497
upgrading NetDefendOS, 500
with IDP and anti-virus, 492
with transparent mode, 216
host monitoring
for route failover, 159
HTML pages
content filtering customizing, 312
user auth customizing, 379
HTTP
ALG, 246
authentication, 375
whitelist precedence, 248
HTTP poster, 144
HTTPS Certificate setting, 51
Alphabetical Index
547
Summary of Contents for DFL-1600 - Security Appliance
Page 27: ...1 3 NetDefendOS State Engine Packet Flow Chapter 1 NetDefendOS Overview 27 ...
Page 79: ...2 7 3 Restore to Factory Defaults Chapter 2 Management and Maintenance 79 ...
Page 146: ...3 9 DNS Chapter 3 Fundamentals 146 ...
Page 227: ...4 7 5 Advanced Settings for Transparent Mode Chapter 4 Routing 227 ...
Page 241: ...5 4 IP Pools Chapter 5 DHCP Services 241 ...
Page 339: ...6 7 Blacklisting Hosts and Networks Chapter 6 Security Mechanisms 339 ...
Page 360: ...7 4 7 SAT and FwdFast Rules Chapter 7 Address Translation 360 ...
Page 382: ...8 3 Customizing HTML Pages Chapter 8 User Authentication 382 ...
Page 386: ... The TLS ALG 9 1 5 The TLS Alternative for VPN Chapter 9 VPN 386 ...
Page 439: ...Figure 9 3 PPTP Client Usage 9 5 4 PPTP L2TP Clients Chapter 9 VPN 439 ...
Page 450: ...9 7 6 Specific Symptoms Chapter 9 VPN 450 ...
Page 488: ...10 4 6 Setting Up SLB_SAT Rules Chapter 10 Traffic Management 488 ...
Page 503: ...11 6 HA Advanced Settings Chapter 11 High Availability 503 ...
Page 510: ...12 3 5 Limitations Chapter 12 ZoneDefense 510 ...
Page 533: ...13 9 Miscellaneous Settings Chapter 13 Advanced Settings 533 ...