規則辦法
國立雲林科技大學防火牆系統管理規範 National Yunlin University of Science and Technology Firewall System Management Regulations
- 資料來源:雲林科技大學圖資處
- 日期:2025/04/30
國立雲林科技大學防火牆系統管理規範
96年6月5日95學年第10次行政會議通過
109年07月28日秘書室提出法規審議層級異動通過
壹、依據
一、教育部校園網路使用規範。
二、國立雲林科技大學校園網路管理規範。
貳、目的
本校防火牆系統管理作業之依據。
參、適用範圍
本校連接校園學術網路及網際網路之防火牆系統。
肆、網路存取政策
一、防火牆系統存取策略預先設定阻絕所有的服務,只允許特定的行政、教學與研究服務通過。
二、防火牆系統存取策略由校內至校外規範
1. 允許使用Http、Https及ICMP服務。
2. 允許FTP服務。
3. 允許Telnet 及SSH服務。
4. 允許SMTP伺服器使用SMTP及POP3服務。
5. 允許DNS伺服器使用DNS服務。
6. 允許使用教育部之所有服務。
7. 除上述之外,其他服務需經申請核准後才開放使用。
三、防火牆系統存取策略由校外至校內規範
1. 允許使用Http、Https及ICMP服務。
2. 允許FTP服務。
3. 允許Telnet 及SSH服務。
4. 允許SMTP伺服器使用SMTP及POP3服務。
5. 允許DNS伺服器使用DNS服務。
6. 除上述之外,其他服務需經申請核准後才開放使用。
四、防火牆系統服務申請步驟:
1. 符合行政、教學與研究需求之服務。
2. 申請人員填寫使用申請表(如附表)送資訊中心憑辦。
3. 承辦人員初審及分析開放服務對校園網路之影響。
4. 圖書資訊處處長(含以上)審核。
5. 依審核結果開放服務或回覆申請人。
伍、其他
一、本規範如有未訂事宜,悉按現行法令、規定及教育部相關作業規範辦理。
二、本辦法經資訊科技服務指導委員會通過,經校長核定後實施,修正時亦同。
National Yunlin University of Science and Technology Firewall System Management Regulations
Approved at the 10th Administrative Meeting of the 95th Academic Year on June 5, 2007
Amendments approved by change in regulatory review level proposed by the Secretariat on July 28, 2020
I. Basis
-
Ministry of Education’s Campus Network Usage Guidelines
-
National Yunlin University of Science and Technology Campus Network Management Regulations
II. Purpose
These regulations serve as the basis for the firewall system management operations of the university.
III. Scope of Application
These regulations apply to the firewall systems connecting the university to the Campus Academic Network and the Internet.
IV. Network Access Policy
-
The default policy of the firewall system is to block all services, only allowing specific administrative, teaching, and research services.
-
Access policy from inside the university to outside (outbound):
-
Allow HTTP, HTTPS, and ICMP services
-
Allow FTP services
-
Allow Telnet and SSH services
-
Allow SMTP servers to use SMTP and POP3 services
-
Allow DNS servers to use DNS services
-
Allow all services provided by the Ministry of Education
-
Other services must be applied for and approved before access is granted
-
-
Access policy from outside the university to inside (inbound):
-
Allow HTTP, HTTPS, and ICMP services
-
Allow FTP services
-
Allow Telnet and SSH services
-
Allow SMTP servers to use SMTP and POP3 services
-
Allow DNS servers to use DNS services
-
Other services must be applied for and approved before access is granted
-
-
Firewall system service application procedure:
-
The service must meet administrative, teaching, or research needs
-
The applicant must fill out the application form (see attached form) and submit it to the Information Center
-
The responsible personnel will conduct a preliminary review and assess the impact of enabling the service on the campus network
-
The Director of the Office of Library and Information Services (or above) will conduct the review
-
Based on the review result, the requested service will either be enabled or the applicant will be notified of the decision
-
V. Others
-
Any matters not covered in these regulations shall be handled in accordance with current laws, regulations, and relevant Ministry of Education guidelines
-
These regulations shall be implemented after approval by the Information Technology Service Advisory Committee and the University President; the same applies to amendments