Page 46 / 90 Scroll up to view Page 41 - 45
Wireless Cable Modem Gateway CGD24G User Manual
3-2
Content Filtering and Firewall Rules
v1.1, May 2009
2.
Enter the following information:
Contact Email Address
. Enter an e-mail address to which the logs will be sent. Use a full
e-mail address (for example, [email protected]).
SMTP Server Name
. Enter the outgoing SMTP mail server of your ISP (for example,
mail.myISP.com). If you leave this box blank, no alerts or logs will be sent.
Sender Email Address
. Enter an e-mail address from which the logs will be sent. Use a
full e-mail address (for example, [email protected]).
3.
Select the
E-mail Alerts Enable
check box to activate the e-mail alerts.
4.
Click
Apply
to save your settings.
For information about event logs, see
“Viewing the Event Log” on page 4-6
.
Blocking Keywords, Sites, and Services
The
gateway provides a variety of options for blocking Internet based content and
communications services.
With its content filtering feature, the gateway prevents objectionable
content from reaching your PCs. The gateway allows you to control access to Internet content by
screening for keywords within Web addresses.
It also has the capability to block access to all
sites except those that are explicitly allowed.
Key content filtering options include:
Blocking access from your LAN to Internet locations that contain keywords that your specify.
Blocking access to websites that you specify as off-limits.
Allowing access to only websites that you specify as allowed.
Blocking Keywords and Domains
The gateway allows you to restrict access to Internet content based on functions such as Web
address keywords and Web domains. A domain name is the name of a particular website. For
example, for the address www.NETGEAR.com, the domain name is NETGEAR.com.
To block keywords and domains:
Page 47 / 90
Wireless Cable Modem Gateway CGD24G User Manual
Content Filtering and Firewall Rules
3-3
v1.1, May 2009
1.
In the main menu, under Content Filtering, select Block Sites. The Block Sites screen displays.
2.
To use keyword blocking, select the
Keyword Blocking Enable
check box. You can enter up
to eight keywords. After you have entered a keyword in the field to the left of the Add
Keyword button, click
Add Keyword
. The keyword will be shown in the Keyword List.
Note the following:
If the keyword
XXX
is specified, the URL www.zzzyyqq.com/xxx.html is blocked.
If the keyword
.com
is specified, only websites with other domain suffixes (such as .edu,
.org, or .gov) can be viewed.
Enter the keyword “
.
” to block all Internet browsing access.
To remove a keyword from the Keyword List, select the keyword, and then click
Remove
Keyword
.
3.
You can use the Domain List to create a list of allowed domains, or to create a list of denied
domains. To use domain blocking, select the
Domain Blocking Enable
check box. After you
have entered a domain in the field to the left of the Add Domain button, click
Add Domain
.
The domain will be shown in the Domain List.
Figure 3-2
Page 48 / 90
Wireless Cable Modem Gateway CGD24G User Manual
3-4
Content Filtering and Firewall Rules
v1.1, May 2009
If the domain www.zzzyyqq.com is specified, the URL <http://www.zzzyyqq.com/xxx.html>
is blocked, along with all other URLs in the www.zzzyyqq.com site.
To remove a domain from the Domain List, select the domain, and then click
Remove
Domain
.
4.
Click
Apply
to save your settings.
Blocking Services
You can use the Services screen to control which services are enabled or disabled. To enable or
disable certain gateway features and web features:
1.
In the main menu, under Content Filtering, select Services. The Services screen displays.
2.
To enable a service, select its check box. To disable a service, clear its check box. The
following table describes the services.
Figure 3-3
Table 3-1. Services
Settings
Description
Firewall Features
When firewall features are enabled, the gateway
performs stateful packet inspection (SPI) and protects
against denial of service (DoS) attacks.
Page 49 / 90
Wireless Cable Modem Gateway CGD24G User Manual
Content Filtering and Firewall Rules
3-5
v1.1, May 2009
3.
Click
Apply
to save your settings.
Firewall Rules—Port Forwarding and Port Blocking
A firewall has two default rules, one for inbound traffic (WAN to LAN) and one for outbound
traffic.
Inbound Rules (Port Forwarding)
These rules restrict access from outsiders. The default rule is to block all access from outside
except responses to requests from the LAN side. You can use port forwarding to add
predefined or custom rules to specify exceptions to the default rule.
Outbound Rules (Port Blocking)
These rules control access to outside resources from local users.The default rule is to allow all
access from the LAN side to the outside. You can use port blocking to add predefined or
custom rules to specify exceptions to the default rules.
Configuring Port Forwarding
Because the gateway uses Network Address Translation (NAT), your network presents only one IP
address to the Internet, and outside users cannot directly address any of your local computers.
However, by defining an inbound rule you can make a local server (for example, a web server or
VPN Pass Through
When VPN passthrough is enabled, IPSec and PPTP
traffic are forwarded. When it is disabled, this traffic is
blocked.
Multicast
When multicast is enabled, the gateway passes
multicasting streams through the firewall.
Web Features
Filter Proxy
When enabled, these features are
not
blocked by the
firewall. When disabled, these features
are
blocked by
the firewall. You can enable or disable each of these
features individually.
Filter Cookies
Filter Java Applets
Filter ActiveX
Filter Popup Windows
Block Fragmented IP
Packets
Table 3-1. Services (continued)
Settings
Description
Page 50 / 90
Wireless Cable Modem Gateway CGD24G User Manual
3-6
Content Filtering and Firewall Rules
v1.1, May 2009
game server) or computer visible and available to the Internet. The rule tells the gateway to direct
inbound traffic for a particular service to one local server or computer based on the destination port
number. This is also known as port forwarding.
To configure port forwarding and services for specific inbound traffic:
1.
In the main menu, under Advanced, select
Port Forwarding
. The Port Forwarding screen
displays.
2.
Under Choose Predefined Service, select a predefined service from the
Service
field. (For
example, FTP, which uses TCP ports 20 and 21.)
3.
As an option, you can also specify a custom rule that is not in the list of predefined services by
specifying the following settings in the Add Custom Rules table:
Name
. Enter a name for the service.
Start Port
. Enter the start port for the service.
End Port
.Enter the end port for the service.
Note:
Some residential broadband ISP accounts do not allow you to run any server
processes (such as a web or FTP server) from your location. Your ISP may
periodically check for servers and may suspend your account if it discovers
any active services at your location. If you are unsure, refer to the Acceptable
Use Policy of your ISP.
Figure 3-4

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top