Chapter 37 System
ZyWALL ATP Series User’s Guide
706
37.7 WWW Overview
The following figure shows secure and insecure management of the Zyxel Device coming in from the
WAN. HTTPS and SSH access are secure. HTTP and Telnet access are not secure.
Note: To allow the Zyxel Device to be accessed from a specified computer using a service,
make sure you do not have a service control rule or to-Zyxel Device security policy rule
to block that traffic.
To stop a service from accessing the Zyxel Device, clear
Enable
in the corresponding service screen.
37.7.1 Service Access Limitations
A service cannot be used to access the Zyxel Device when:
1
You have disabled that service in the corresponding screen.
2
The allowed IP address (address object) in the
Service Control
table does not match the client IP
address (the Zyxel Device disallows the session).
3
The IP address (address object) in the
Service Control
table is not in the allowed zone or the action is set
to
Deny
.
4
There is a security policy rule that blocks it.
37.7.2 System Timeout
There is a lease timeout for administrators. The Zyxel Device automatically logs you out if the
management session remains idle for longer than this timeout period. The management session does
not time out when a statistics screen is polling.
Each user is also forced to log in the Zyxel Device for authentication again when the reauthentication
time expires.
You can change the timeout settings in the
User/Group
screens.
37.7.3 HTTPS
You can set the Zyxel Device to use HTTP or HTTPS (HTTPS adds security) for Web Configurator sessions.
Specify which zones allow Web Configurator access and from which IP address the access can come.
Action
Select
Accept
to have the Zyxel Device allow the DNS queries from the specified computer.
Select
Deny
to have the Zyxel Device reject the DNS queries from the specified computer.
OK
Click
OK
to save your customized settings and exit this screen.
Cancel
Click
Cancel
to exit this screen without saving
Table 310 Configuration > System > DNS > Service Control Rule Add (continued)
LABEL
DESCRIPTION