30.01.2015 Views

Administrator's Guide - Kerio Software Archive

Administrator's Guide - Kerio Software Archive

Administrator's Guide - Kerio Software Archive

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

18.2 Universal Plug-and-Play (UPnP)<br />

Removing routes from the Routing Table<br />

Using the Remove button, records can be removed from the routing table. The following rules<br />

are used for route removal:<br />

• Static routes in the Static Routes folder are managed by <strong>Kerio</strong> Control. Removal of any<br />

of the static routes would remove the route from the system routing table immediately<br />

and permanently (after clicking on the Apply button).<br />

• Dynamic (system) route will be removed as well, regardless whether it was added in<br />

the Administration Console or by the route command. However, it is not possible to<br />

remove any route to a network which is connected to an interface.<br />

• Persistent route of the operating system will be removed from the routing table only<br />

after restart of the operating system. Upon reboot of the operating system, it will be<br />

restored automatically. There are many methods that can be used to create persistent<br />

routes (the methods vary according to operating system — in some systems, the route<br />

-p or the route command called from an execution script can be used, etc.). It is not<br />

possible to find out how a particular persistent route was created and how it might be<br />

removed for good.<br />

18.2 Universal Plug-and-Play (UPnP)<br />

<strong>Kerio</strong> Control supports UPnP protocol (Universal Plug-and-Play). This protocol enables client<br />

applications (i.e. Microsoft MSN Messenger) to detect the firewall and make a request for<br />

mapping of appropriate ports from the Internet for the particular host in the local network.<br />

Such mapping is always temporary — it is either applied until ports are released by the<br />

application (using UPnP messages) or until expiration of the certain timeout.<br />

The required port must not collide with any existing mapped port or any traffic rule allowing<br />

access to the firewall from the Internet. Otherwise, the UPnP port mapping request will be<br />

denied.<br />

Configuration of the UPnP support<br />

UPnP can be enabled under Configuration → Traffic Policy → Security Settings, the Miscellaneous<br />

tab.<br />

Figure 18.3<br />

UPnP settings (Configuration → Traffic Policy → Security Settings, the Miscellaneous tab)<br />

247

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!