Page 121 / 133 Scroll up to view Page 116 - 120
The new mapping is now in the list.
3.
Setup email server and enable alerting,
System->Logging
:
Check
Enable E-mail alerting for IDS/IDP events
Select sensitivity
Normal
Enter SMTP server IP (email server):
192.168.2.4
Enter sender:
Enter E-mail address 1:
Enter E-mail address 2:
Click
Apply
4.
Click
Activate
and wait for the firewall to restart.
When attacks are stopped by the firewall it will listed in the logs. Since we enabled email
alerting in this example, emails will also be sent to the users
webmaster
and
steve
.
In this example we used the
prevention
mode. This means that the firewall will block all
attacks. In
Inspection only
mode nothing will be blocked, the firewall will only log the attacks
and send email alerts (if that is enabled).
Page 122 / 133
122
Appendixes
Appendix A: ICMP Types and Codes
The Internet Control Message Protocol (ICMP) has many messages that are identified by
a “type” field; many of these ICMP types have a "code" field.
Here we list the types with their
assigned code fields.
Type
Name
Code
Description
Reference
0
Echo Reply
0
No Code
RFC792
3
Destination Unreachable
0
Net Unreachable
RFC792
1
Host Unreachable
RFC792
2
Protocol Unreachable
RFC792
3
Port Unreachable
RFC792
4
Fragmentation Needed and
Don't Fragment was Set
RFC792
5
Source Route Failed
RFC792
6
Destination Network Unknown
RFC792
7
Destination Host Unknown
RFC792
8
Source Host Isolated
RFC792
9
Communication
with
Destination
Network
is
Administratively Prohibited
RFC792
10
Communication
with
Destination
Host
is
Administratively Prohibited
RFC792
11
Destination
Network
Unreachable
for
Type
of
Service
RFC792
12
Destination Host Unreachable
for Type of Service
RFC792
13
Communication
Administratively Prohibited
RFC1812
14
Host Precedence Violation
RFC1812
15
Precedence cutoff in effect
RFC1812
4
Source Quench
0
No Code
RFC792
Page 123 / 133
5
Redirect
0
Redirect Datagram for the
Network (or subnet)
RFC792
1
Redirect Datagram for the
Host
RFC792
2
Redirect Datagram for the
Type of Service and Network
RFC792
3
Redirect Datagram for the
Type of Service and Host
RFC792
8
Echo
0
No Code
RFC792
9
Router Advertisement
0
Normal router advertisement
RFC1256
16
Does not route common traffic
RFC2002
10
Router Selection
0
No Code
RFC1256
11
Time Exceeded
0
Time to Live exceeded in
Transit
RFC792
1
Fragment Reassembly Time
Exceeded
RFC792
12
Parameter Problem
0
Pointer indicates the error
RFC792
1
Missing a Required Option
RFC1108
2
Bad Length
RFC792
13
Timestamp
0
No Code
RFC792
14
Timestamp Reply
0
No Code
RFC792
15
Information Request
0
No Code
RFC792
16
Information Reply
0
No Code
RFC792
17
Address Mask Request
0
No Code
RFC950
18
Address Mask Reply
0
No Code
RFC950
30
Traceroute
RFC1393
31
Datagram
Conversion
Error
RFC1475
40
Photuris
RFC2521
0
Bad SPI
RFC2521
1
Authentication Failed
RFC2521
2
Decompression Failed
RFC2521
3
Decryption Failed
RFC2521
4
Need Authentication
RFC2521
5
Need Authorization
RFC2521
Page 124 / 133
124
Appendix B: Common IP Protocol Numbers
These are some of the more common IP Protocols, for all follow the link after the table.
Decimal
Keyword
Description
Reference
1
ICMP
Internet Control Message
RFC792
2
IGMP
Internet Group Management
RFC1112
3
GGP
Gateway-to-Gateway
RFC823
4
IP
IP in IP (encapsulation)
RFC2003
5
ST
Stream
RFC1190, RFC1819
6
TCP
Transmission Control
RFC793
8
EGP
Exterior Gateway Protocol
RFC888
17
UDP
User Datagram
RFC768
47
GRE
General
Routing
Encapsulation
50
ESP
Encapsulation
Security
Payload
RFC2406
51
AH
Authentication Header
RFC2402
108
IPComp
I IP Payload Compression
Protocol
RFC2393
112
VRRP
Virtual
Router
Redundancy
Protocol
115
L2TP
Layer Two Tunneling Protocol
Page 125 / 133
LIMITED WARRANTY
D-Link provides this limited warranty for its product only to the person or entity who originally
purchased the product from D-Link or its authorized reseller or distributor.
Limited Hardware Warranty:
D-Link warrants that the hardware portion of the D-Link products
described below (“Hardware”) will be free from material defects in workmanship and materials from
the date of original retail purchase of the Hardware, for the period set forth below applicable to the
product type (“Warranty Period”) if the Hardware is used and serviced in accordance with applicable
documentation; provided that a completed Registration Card is returned to an Authorized D-Link
Service Office within ninety (90) days after the date of original retail purchase of the Hardware. If a
completed Registration Card is not received by an authorized D-Link Service Office within such ninety
(90) period, then the Warranty Period shall be ninety (90) days from the date of purchase.
Product Type
Warranty Period
Product (excluding power supplies and fans)
One (1) Year
Power Supplies and Fans
One (1) Year
Spare parts and spare kits
Ninety (90) days
D-Link’s sole obligation shall be to repair or replace the defective Hardware at no charge to the original
owner. Such repair or replacement will be rendered by D-Link at an Authorized D-Link Service Office.
The replacement Hardware need not be new or of an identical make, model or part; D-Link may in its
discretion may replace the defective Hardware (or any part thereof) with any reconditioned product that
D-Link reasonably determines is substantially equivalent (or superior) in all material respects to the
defective Hardware. The Warranty Period shall extend for an additional ninety (90) days after any
repaired or replaced Hardware is delivered. If a material defect is incapable of correction, or if D-Link
determines in its sole discretion that it is not practical to repair or replace the defective Hardware, the
price paid by the original purchaser for the defective Hardware will be refunded by D-Link upon return
to D-Link of the defective Hardware. All Hardware (or part thereof) that is replaced by D-Link, or for
which the purchase price is refunded, shall become the property of D-Link upon replacement or refund.
Limited Software Warranty:
D-Link warrants that the software portion of the product (“Software”)
will substantially conform to D-Link’s then current functional specifications for the Software, as set
forth in the applicable documentation, from the date of original delivery of the Software for a period of
ninety (90) days (“Warranty Period”), if the Software is properly installed on approved hardware and
operated as contemplated in its documentation. D-Link further warrants that, during the Warranty
Period, the magnetic media on which D-Link delivers the Software will be free of physical defects. D-
Link’s sole obligation shall be to replace the non-conforming Software (or defective media) with
software that substantially conforms to D-Link’s functional specifications for the Software. Except as
otherwise agreed by D-Link in writing, the replacement Software is provided only to the original
licensee, and is subject to the terms and conditions of the license granted by D-Link for the Software.
The Warranty Period shall extend for an additional ninety (90) days after any replacement Software is
delivered. If a material non-conformance is incapable of correction, or if D-Link determines in its sole
discretion that it is not practical to replace the non-conforming Software, the price paid by the original
licensee for the non-conforming Software will be refunded by D-Link; provided that the non-
conforming Software (and all copies thereof) is first returned to D-Link. The license granted respecting
any Software for which a refund is given automatically terminates.
What You Must Do For Warranty Service:
Registration Card. The Registration Card provided at the back of this manual must be completed and
returned to an Authorized D-Link Service Office for each D-Link product within ninety (90) days after

Rate

4 / 5 based on 1 vote.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top