SGT Private RallyPoint Member 2957761 <div class="images-v2-count-0"></div>Update (4/16/2020): This was meant to apply to users on their PC on their home network. Looking back, I should&#39;ve specified this much earlier.<br /><br />I&#39;m going to start with a few:<br />1. How to turn it on<br />2. Logging<br />3. That it&#39;s not a complete solution<br />4. What it does and doesn&#39;t do <br /> What basic functions should the average computer user know about software or hardware firewall configuration? 2017-09-29T13:00:26-04:00 SGT Private RallyPoint Member 2957761 <div class="images-v2-count-0"></div>Update (4/16/2020): This was meant to apply to users on their PC on their home network. Looking back, I should&#39;ve specified this much earlier.<br /><br />I&#39;m going to start with a few:<br />1. How to turn it on<br />2. Logging<br />3. That it&#39;s not a complete solution<br />4. What it does and doesn&#39;t do <br /> What basic functions should the average computer user know about software or hardware firewall configuration? 2017-09-29T13:00:26-04:00 2017-09-29T13:00:26-04:00 Sgt Wayne Wood 2957778 <div class="images-v2-count-0"></div>Iptables. A scripting language to automate it, TCL if you&#39;re working on Cisco. What the standard ports are. What ephemeral ports are. TCP/IP. Handshaking. How to defeat IDS. Response by Sgt Wayne Wood made Sep 29 at 2017 1:07 PM 2017-09-29T13:07:15-04:00 2017-09-29T13:07:15-04:00 SSG Derek Scheller 2957814 <div class="images-v2-count-0"></div>Honestly I believe the average user should just know how to implement it and what the effects are of allowing applications through your firewall. If we are being completely honest with ourselves here, the average user is lucky if they know how to enable and disable even their AV. Without training you can&#39;t expect the average user to know how logging works and how to manipulate it unless they do their own research. Response by SSG Derek Scheller made Sep 29 at 2017 1:25 PM 2017-09-29T13:25:20-04:00 2017-09-29T13:25:20-04:00 PO3 Steven Sherrill 2957854 <div class="images-v2-count-0"></div><a class="dark-link bold-link" role="profile-hover" data-qtip-container="body" data-id="77973" data-source-page-controller="question_response_contents" href="/profiles/77973-25u-signal-support-systems-specialist">SGT Private RallyPoint Member</a> In a perfect world, you don&#39;t want the average user touching the firewall at all in any way. They are likely to cause more problems than they can possibly solve. What I want the average user to know about the firewall is that if a site they need to complete a task is blocked by the firewall, send the URL to the IT Group so it can be reviewed and a decision made. Sorry, Netflix is not needed for work purposes. Response by PO3 Steven Sherrill made Sep 29 at 2017 1:44 PM 2017-09-29T13:44:46-04:00 2017-09-29T13:44:46-04:00 SSgt Ryan Sylvester 2957891 <div class="images-v2-count-0"></div>That they can turn it off by pressing Ctrl [. If they can&#39;t get to the website they are trying to get to after that, there must be something wrong with that website. Just try again later, or use their BYOD.<br /><br />Yes. Ctrl [ works on all firewall software. Yes, it works on your Mac, too. Yep, even if it&#39;s 10.7 because you haven&#39;t upgraded since the Stone Ages. Oh, your Ctrl key isn&#39;t working? Just use the Alt key instead, that&#39;ll work, too. Response by SSgt Ryan Sylvester made Sep 29 at 2017 1:59 PM 2017-09-29T13:59:56-04:00 2017-09-29T13:59:56-04:00 Sgt Private RallyPoint Member 2957928 <div class="images-v2-count-0"></div>In my opinion, what defines an average user? Anyways, I wouldn&#39;t expect an average user to know really, as I wouldn&#39;t want them touching any of that, even if they were knowledgeable. That&#39;s where Cyber security awareness training comes into play, and the guidelines for the same. Response by Sgt Private RallyPoint Member made Sep 29 at 2017 2:12 PM 2017-09-29T14:12:27-04:00 2017-09-29T14:12:27-04:00 Capt Private RallyPoint Member 2958499 <div class="images-v2-count-0"></div>That we have a firewall to protect the network and that it&#39;d not ok to try and get around it. Response by Capt Private RallyPoint Member made Sep 29 at 2017 5:34 PM 2017-09-29T17:34:06-04:00 2017-09-29T17:34:06-04:00 2017-09-29T13:00:26-04:00