Transparent Mode; Hacker Prevention And Protection; Vpn - D-Link DFL-500 User Manual

Soho firewall
Hide thumbs Also See for DFL-500:
Table of Contents

Advertisement

Transparent mode

Transparent Mode provides even quicker and easier installation when the requirement is to provide firewall
protection to a pre-existing network with public addresses. The internal and external network interfaces of the
DFL-500 can be in the same network; therefore, the DFL-500 can be inserted into your network at any point
without the need to make any changes to your network.
Packets arriving at the DFL-500 are intelligently forwarded to the correct network interface and firewall
policies prevent unauthorized access to your network.
Transparent mode provides the same basic firewall protection as NAT mode. However, more advanced
features such as the VPN, virus scanning, and content filtering are only available in NAT mode.

Hacker prevention and protection

The DFL-500 is built to defend your network from network attacks including:
Distributed Denial-Of-Service (DDOS) attacks
SYN Attack
ICMP Flood
UDP Flood
IP fragmentation attacks
Ping of Death Attack
Tear Drop Attack
Land Attack
Port Scan Attack
IP Source Routing
IP Spoofing Attack
Address Sweep Attack
WinNuke Attack
You can configure email alerts that send an email to the system administrator when the DFL-500 detects one
of these attacks. You can also configure email alerts to provide real time warnings of ongoing attacks. Up to
three email recipients can be specified.

VPN

Using the DFL-500 integrated VPN, you can provide a secure connection between widely separated office
networks or securely link telecommuters or travellers to your office network. The DFL-500 industry standard
VPN creates an encrypted traffic tunnel between DFL-500-protected networks or between a DFL-500 and
third-party VPN products that support IPSec. VPN features include:
IPSec, ESP security in tunnel mode
Hardware accelerated encryption using IPSEC, DES, and 3DES (triple-DES)
HMAC MD5 or HMAC SHA authentication and data integrity
Automatic IKE (Internet Key Exchange) and manual key exchange
PPTP for easy connectivity with the VPN standard supported by the most popular operating systems
L2TP for easy connectivity with a more secure VPN standard also supported by many popular operating
systems
DFL-500 User's Manual
10

Advertisement

Table of Contents
loading

Table of Contents