Utm

You might also like

Download as docx, pdf, or txt
Download as docx, pdf, or txt
You are on page 1of 2

D-LINK DFL-260 UTM FIREWALL DEPLOYMENT PLAN 1. All servers and workstations using the 192.168.100.

0/24 must be identified and recorded. 2. Determine all the necessary ports. 3. The original router will serve as a back-up DHCP server and gateway just in case the UTM firewall has a problem. A. Original router configuration a. Wan: DHCP b. Local IP address: 192.168.100.254 c. DNS: 124.106.5.2 ; 124.106.2.2 d. DHCP server configuration IP Pool: 192.168.100.20 192.168.100.120 Netmask: 255.255.255.128 Network: 192.168.100.0/25 DNS: 124.106.5.2 ; 124.106.2.2 B. Configure the firewall with setting similar to the original router. a. Wan: DHCP b. Local IP address: 192.168.100.254 c. DNS: 124.106.5.2 ; 124.106.2.2 d. DHCP server configuration IP Pool: 192.168.100.20 192.168.100.120 Netmask: 255.255.255.128 Network: 192.168.100.0/25 DNS: 124.106.5.2 ; 124.106.2.2 C. Other firewall configuration a. Restrict 192.168.100.0/25 ( 192.168.100.1 to 127) to use only the necessary services like SQL (1433) and PACS. b. DNS, HTTP, HTTPS, SMTP and other unnecessary ports must be denied to 192.168.100.1 c. Prioritize SQL and PACS.

D. Workstation a. Restricted workstations should be configured to dynamically acquire IP address. It should not be changed to static to prevent conflicts. b. The unrestricted IP s is not defined on the DHCP IP Poll therefore in should be assigned manually. c. Each unrestricted workstation must be assigned with its own IP address and use only the assigned IP address to avoid IP conflicts.

d. If possible disable administrator privileges on all workstations to prevent the user from manipulating network settings.

You might also like