- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
09-06-2011 09:02 AM
Hi all,
Here is a small question regarding zone protection profile :smileycool:
What happens if we do not define any zone protection profile to a specific zone ? Is the default behaviour to allow all types of potential threaths ( ICMP flood, fragmentation and so on ... ) or to deny them ?
Thanks for your help.
09-07-2011 11:02 PM
If no zone protection is defined on a zone then PA would not apply any of the protection. So all would not automatically deny ICMP/UDP floods, etc. However your security rules will still apply.
-Richard
09-08-2011 02:07 AM
Ok, thanks for your answer.
Regards,
09-08-2011 07:13 AM
@Richard .. are you saying that traffic will be allow?
Protection means AV, IPS , Anti Malware and such right?
09-08-2011 08:57 AM
No, the zone protection is not content inspection like AV, IPS, etc. The zone protection profiles are specific to SYN, ICMP, UDP, and other IP flooding attacks as well as host sweeps and port scan type protections.
Alfred
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!