2
protection against unwanted intrusion without slowing
the flow of approved traffic on enterprise networks.
Using rules-based software, the security gateway lets you
define the type of traffic that can enter or leave your
network.
■ Inbound rules control the type of traffic flowing
into application servers on your security gateway-
protected networks. When creating inbound rules,
you must specify the applications server, the service,
protocols, and ports that the rule allows. When an
inbound rule exists, the firewall allows entry for
traffic matching the rule from any external host.
Note: By default, all inbound traffic is blocked.
■ Outbound rules control the type of traffic leaving
your protected network. By default, all internal
computers have no restrictions on outbound access.
When you define an outbound rule for a given
computer group however, all other traffic is blocked
unless an outbound rule is defined to allow it.
The security gateway also lets you configure special
applications that can be used for certain applications
with two-way communication (such as games and video
conferencing). When a special application is enabled, it
acts as a global filter; it is not specific to any computer
group or inbound/outbound rule. When enabled, the
traffic specified can pass in either direction from any
host.
See Chapter 5, “Network Traffic Control” in the
Symantec Gateway Security 300 Series Administrator’s
Guide.
Secure your network. Grant network access
to your remote users.
Symantec Gateway Security 300 Series supports IPsec-
compliant Virtual Private Network (VPN) technology
that lets you securely extend the boundaries of your
internal network to use insecure communication
channels (such as the Internet or wireless) to safely
transport sensitive data. VPNs are used to allow remote
users or remote networks access to the protected
resources of your network.
Symantec Gateway Security 300 Series supports three
types of VPN tunnels: Gateway-to-Gateway, Client-to-
Gateway, and wireless LAN (WLAN) Client-to-Gateway
tunnels.
Additive license/media kit options for Symantec
Gateway Security 300 Series Client-to-Gateway VPN
software allow concurrent client-to-gateway VPN
tunnels on all models. Licenses are available in 5 and 10
concurrent session increments.
Securing your network connections using VPN
technology is an important step in ensuring the quality
and integrity of your data.
See Chapter 6, “Establishing Secure VPN Connections”
in the Symantec Gateway Security 300 Series
Administrator’s Guide.
Prevent and handle attacks. Keep hackers
out.
The Symantec Gateway Security 300 Series’ intrusion
detection and intrusion prevention (IDS and IPS)
features help you to secure your organization against
unwanted intruders and attacks. They let you monitor
network traffic for suspicious behavior and respond to
detected intrusions in real time.
The intrusion detection component detects intrusion
attempts based on specific atomic signatures including
Teardrop, Back Orifice, Girlfriend, buffer overflows, and
many others. As new firmware packages containing
more atomic signatures become available, Symantec’s
LiveUpdate technology, can download it to address new
threats well before they become security issues.
In addition to preventing attacks based on atomic
signatures, the IDS and IPS components also offer the
following levels of protection:
■ IP spoofing protection
■ IP options verification
■ TCP flag validation
■ Trojan horse protection
■ Port scan detection
See Chapter 8, “Preventing Attacks” in the Symantec
Gateway Security 300 Series Administrator’s Guide.