14.3 Services
185
Description
Comments for the service defined. It is strongly recommended describing each definition,
especially with non-standard services so that there will be minimum confusion when
referring to the service at a later time.
Protocol
The communication protocol used by the service.
Most standard services uses the
TCP
or the
UDP
protocol, or both when they can be
defined as one service with the
TCP/UDP
option. Other options available are
ICMP
and
other
.
The
other
options allows protocol specification by the number in the IP packet header.
Any protocol carried in IP (e.g. GRE — protocol number is
47
) can be defined this way.
Figure 14.7
Setting a protocol in service definition
Protocol inspector
WinRoute
protocol inspector (see below) that will be used for this service.
Warning
Each inspector should be used for the appropriate service only. Functionality of the
service might be affected by using an inappropriate inspector.
Source Port and Destination Port
If the TCP or UDP communication protocol is used, the service is defined with its port
number. In case of standard client-server types, a server is listening for connections on
a particular port (the number relates to the service), whereas clients do not know their
port in advance (port are assigned to clients during connection attempts). This means
that source ports are usually not specified, while destination ports are usually known in
case of standard services.
Note:
Specification of the source port may be important, for example during the definition
of communication filter rules. For details, refer to chapter
.
Source and destination ports can be specified as:
•
Any
— all the ports available (
1-65535
)
•
Equal to
—a particular port (e.g.
80
)
•
Greater than
,
Less than
— all ports with a number that is either greater or less
than the number defined
•
Not equal to
— all ports that are not equal to the one defined
•
In range
— all ports that fit to the range defined (including the initial and the
terminal ones)
•
List
— list of the ports divided by commas (e.g.
80,8000,8080
)
Summary of Contents for KERIO WINROUTE FIREWALL 6
Page 1: ...Kerio WinRoute Firewall 6 Administrator s Guide Kerio Technologies s r o...
Page 157: ...12 3 Content Rating System Kerio Web Filter 157 Figure 12 7 Kerio Web Filter rule...
Page 247: ...19 4 Alerts 247 Figure 19 14 Details of a selected event...
Page 330: ...Chapter 23 Kerio VPN 330 Figure 23 55 The Paris filial office VPN server configuration...
Page 368: ...368...