Page 186 / 342 Scroll up to view Page 181 - 185
8
Setting Up the Nokia IP45 Security Platform Security Policy
186
Nokia IP45 Security Platform User’s Guide v4.0
±
Gnutella
—a protocol designed for sharing files on a distributed network.
±
eMule
—a file sharing client based on the eDonkey2000 protocol.
±
BitTorrent
—a peer-to-peer file distribution tool.
Note
To select values for the Gnutella, eMule and BitTorrent connection types, expand the Peer to
Peer tree, click corresponding node and select the values from the drop-down list by using
the information provided in
Table 51
.
Instant Messaging Traffic
SmartDefense can block instant messaging applications that use VoIP protocols by identifying
the fingerprints and HTTP headers of messaging application.
Table 51
Peer to Peer - fields for Kazaa, Gnutella, eMule and BitTorrent
Field
Action
Action
Specify the action to be taken when a connection is attempted.
Options:
Block: blocks the connection
None: no action is required
Default value: None
Track
Specify whether to log peer-to-peer connections.
Options:
Log: logs the connection
None: does not log the connection
Default value: None
Block
proprietary
protocols on
all ports
Specify whether the proprietary protocols should be blocked on all
ports.
Options:
Block: blocks the proprietary protocol on all ports. This prevents
all communication using this peer-to-peer application.
None: does not block the proprietary protocols on all ports.
Default value: Block
Block
masquerading
over HTTP
protocol
Specify whether the masquerading over HTTP protocol should be
blocked.
Options:
Block: blocks the masquerading over HTTP protocol.
None: does not block the masquerading over HTTP protocol.
Page 187 / 342
SmartDefense
Nokia IP45 Security Platform User’s Guide v4.0
187
This category includes the following instant messengers:
±
Skype
±
Yahoo
±
ICQ
Note
To select values for instant messages, expand the Peer to Peer tree, click appropriate nodes
and select the values from the drop-down list by using the information provided in Table 52.
For information about SmartDefense command-line interface, see the
Nokia IP45 Security
Platform CLI Reference Guide Version 4.0.
Table 52
Instant Messaging Traffic - fields for Skype, Yahoo and ICQ
Field
Action
Action
Choose the action to be taken when a connection is attempted.
Options:
Block: blocks the connection
None: no action is required
Default value: None
Track
Specify whether to log the Instant Messenger connections.
Options:
Log: logs the connection
None: does not log the connection
Default value: None
Block
proprietary
protocols on
all ports
Specify whether the proprietary protocols should be blocked on all
ports.
Options:
Block: blocks the proprietary protocol on all ports. This prevents
all communication using this peer-to-peer applicaton.
None: does not block the proprietary protocols on all ports
Default value: Block
Block
masquerading
over HTTP
protocol
Specify whether the masquerading over HTTP protocol should be
blocked.
Options:
Block: blocks the masquerading over HTTP protocol.
None: does not block the masquerading over HTTP protocol.
Page 188 / 342
8
Setting Up the Nokia IP45 Security Platform Security Policy
188
Nokia IP45 Security Platform User’s Guide v4.0
Secure HotSpot
Nokia IP45 v4.0 supports secure HotSpot Internet access to its networks. Users need to have
access information to the HotSpot access, which can be obtained by visiting http://my.hotspot
page. On acceptance of terms and conditions, the user is provided with the access information.
The user is prompted for authentication (username and password) on every login to these
HotSpot networks.
SecuRemote VPN users, who are authenticated by the Internal VPN server are not prompted for
the authentication.
My HotSpot provides support for quick guest access, as provided by the administrator. For more
information on adding guest HotSpot users, see
“Adding Guest HotSpot Users”
on page 194
.
Enabling Secure HotSpot
You can enable the secure HotSpot feature by using the GUI and command-line interface.
Use the following procedure to enable Hot Spot feature using the GUI.
To configure secure HotSpot
1.
Choose Security from the main menu and select HotSpot.
My HotSpot page opens.
Page 189 / 342
Secure HotSpot
Nokia IP45 Security Platform User’s Guide v4.0
189
2.
Select the HotSpot network by checking against the respective check box. You can select
multiple networks.
3.
Enter the information in the fields by using
Table 53
.
4.
Click Apply.
5.
To preview the HotSpot page, click Preview.
For information about configuring HotSpot with the CLI, see the
Nokia IP45 Security Platform
CLI Reference Guide Version 4.0.
Table 53
HotSpot
Field
Action
My HotSpot
Title
Type a name that should appear on your HotSpot page
Default value: Welcome to My HotSpot
My HotSpot
Terms
Type the terms and conditions that the user must agree to, before
accessing the HotSpot network. You might use HTML tags as
required.
My HotSpot is
password
protected
Select this option to prompt for user authentication to access the
HotSpot network. The Allow a user to login from more than one
computer at the same time check box appears. Check this to allow
the user to access from multiple computers.
If you Does not select this option, any user who accepts the terms
as provided in My HotSpot terms will be able to access the
HotSpot network.
Page 190 / 342
8
Setting Up the Nokia IP45 Security Platform Security Policy
190
Nokia IP45 Security Platform User’s Guide v4.0

Rate

3.5 / 5 based on 2 votes.

Popular Nokia Models

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top