User manual
Firewall 
128
Administration services 
The following figure shows the Administration Services page: 
By default the SG unit runs a web administration server, a Telnet and an SSH service. 
Access to these services can be restricted to specific interfaces. 
Typically, access to the web management console (Web/SSL Web) is restricted to hosts 
on your local network (LAN Interfaces). 
Disallowing all services is not recommended, as this makes future configuration changes 
impossible unless your SG unit is reset to the factory default settings. 
Warning 
If you do want to allow administrative access on interfaces other than LAN Interfaces, 
there are several security precautions you should take. See the note in the next section 
for details. Also consider remote administration using a VPN connection as an alternative 
to opening a hole in the firewall, PPTP in particular is well suited to this task. 










