SECURITY
Version 1.0, 02/2015. Copyright 2012 Hitron Technologies
103
Version 1.0, 02/2015. Copyright 2014 Hitron Technologies
103
Hitron CGNVM User’s Guide
6.1.2
Intrusion detection system
An intrusion detection system monitors network activity, looking for policy violations,
and malicious or suspicious activity. The CGNVM’s intrusion detection system logs all
such activity to the
Security
>
Logs
screen.
6.1.3
Device Filtering
Every networking device has a unique Media Access Control (MAC) address that
uniquely identifies it on the network. When you enable MAC address filtering on the
CGNVM’s firewall, you can set up a list of devices, identified by their MAC addresses,
and then specify whether you want to:
Deny the devices on the list access to the CGNVM and the network (in which
case all other devices can access the network)
or
Allow the devices on the list to access the network (in which case no other
devices can access the network).
6.1.4
Service Filtering
Service filtering is a way of preventing users on the LAN from connecting with devices
on the WAN via specific services, protocols or applications. It achieves this by
permitting or denying traffic from the LAN to pass to the WAN, based on the target
port.
6.2
The Security: Firewall Screen
Use this screen to turn firewall features on or off and to allow or permit certain
applications and protocols. You can select the level of firewall protection from pre-
defined options, or create a custom protection profile.
To block specific ports, use the Service Filter screen (see
).
Click
Security
>
Firewall
. The following screen displays.