Chapter 7 Monitor
ZyWALL USG Series User’s Guide
220
The following table describes the fields in the previous screen.
7.15 FQDN Object Screen
Click
Monitor > System Status > FQDN Object
to open the
FQDN Object
screen. View FQDN-to-IP address
mappings cached in this screen. An FQDN is resolved to its IP address using the DNS server configured on
the Zyxel Device. If the Zyxel Device receives a DNS query for an FQDN and the Zyxel Device has an
FQDN cache entry, the Zyxel Device can map the IP address in a DNS response without having to query
a DNS name server. The Zyxel Device updates FQDN-to-IP address mappings when the TTL (Time To Live)
setting expires.
You can configure FQDN objects in
Configuration > Object > Address/Geo IP > Address
or
Configuration
> Object > Address/Geo IP > Address Group
.
FQDN can be used in Security Policy, Policy Route, BWM and Web Authentication profiles as source and
destination criteria. FQDN with a wildcard (for example, *.zyxel.com) can be used in these profiles as
destination criteria only.
Suppose you want to block certain users from going to a website with a dynamically updated IP address
using DDNS. Create an FQDN object for the website in
Object > Address
, and then create a Security
Policy in
Security Policy > Policy Control > Add
. Use the FQDN object to identify the website as a
destination, and configure specific users to block. When a user tries to connect to the forbidden
website, the Zyxel Device first checks the IP address - website mapping in response to the DNS query
and then finds the FQDN object match. The Security Policy that has this FQDN object match can then
block the configured users from accessing the website.
Table 52 Monitor > System Status > Ethernet Neighbor
LABEL
DESCRIPTION
Local Port (Description)
This field displays the port of the Zyxel Device, on which the neighboring device is
discovered.
For Zyxel Devices that support
Port Role
, if ports 3 to 5 are grouped together and there
is a connection to P5 only, the Zyxel Device will display P3 as the interface port
number (even though there is no connection to that port).
Model Name
This field displays the model name of the discovered device.
System Name
This field displays the system name of the discovered device.
Firmware Version
This field displays the firmware version of the discovered device.
Port (Description)
This field displays the first internal port on the discovered device. Internal is an
interface type displayed in the
Network > Interface > Ethernet > Edit
screen. For
example, if P1 and P2 are WAN, P3 to P5 are LAN, and P6 is DMZ, then Zyxel Device will
display P3 as the first internal interface port number.
For Zyxel Devices that support
Port Role
, if ports 3 to 5 are grouped together and there
is a connection to P5 only, the Zyxel Device will display P3 as the first internal interface
port number (even though there is no connection to that port).
IP Address
This field displays the IP address of the discovered device.
MAC Address
This field displays the MAC address of the discovered device.
Refresh
Click this button to update the information in the screen.
Summary of Contents for USG110
Page 27: ...27 PART I User s Guide ...
Page 195: ...195 PART II Technical Reference ...
Page 309: ...Chapter 10 Interfaces ZyWALL USG Series User s Guide 309 ...
Page 313: ...Chapter 10 Interfaces ZyWALL USG Series User s Guide 313 ...
Page 358: ...Chapter 10 Interfaces ZyWALL USG Series User s Guide 358 ...
Page 373: ...Chapter 10 Interfaces ZyWALL USG Series User s Guide 373 ...