Performing global tcp proxy setting, Enabling tcp proxy for a security zone, Adding a protected ip address entry – H3C Technologies H3C SecPath F1000-E User Manual

Page 42

Advertising
background image

34

Performing global TCP proxy setting

Select Intrusion Detection > TCP Proxy > TCP Proxy Configuration from the navigation tree to enter the

page shown in

Figure 39

. The Global Configuration area allows you to perform global setting for TCP

proxy.

Figure 39 TCP proxy configuration

Table 12 Configuration items

Item

Description

Unidirection/Bidirediction

Set the global proxy mode of TCP proxy.

Enabling TCP proxy for a security zone

Select Intrusion Detection > TCP Proxy > TCP Proxy Configuration from the navigation tree to enter the
page shown in

Figure 39

. You can enable/disable the TCP proxy feature for a security zone in the Zone

Configuration area.

The icon indicates that the TCP proxy feature is disabled for the corresponding security zone.
You can click the Enable button beside the icon to enable the feature.

The icon indicates that the TCP proxy feature is enabled for the corresponding security zone.
You can click the Disable button beside the icon to disable the feature.

Adding a protected IP address entry

Select Intrusion Detection > TCP Proxy > Protected IP Configuration to enter the page shown in

Figure 40

,

which lists information about protected IP address entries and the relative statistics. Click Add to enter the
page for configuring a protected IP address entry, as shown in

Figure 41

.

Advertising