So, I have a Dlink 604t router (yeah, years old). It has firewall capability with check boxes and services listed below.

My questions is this:

Which way around do I check the boxes to make sure the protections is ON?

My instinct is to click the check boxes to have the tick marks visible to give me protection, however, it can nearly be taken both ways. For example, when clicking something as "enabled" does that enable the protection, or does that enable the service to be let through? Similarly, ticking each "attack" - does that turn on the protection, or allow that service?

-------------------------
Firewall Configuration
DoS Protection
DoS attacks can be checked based on your specific need.
State: Enabled Disabled
SYN Flooding checking
ICMP Redirection checking
Port Scan Protection
Port Scan attacks can be checked based on your specific need.
State: Enabled Disabled
FIN/URG/PSH attack
Xmas Tree attack
Null Scan attack
SYN/RST attack
SYN/FIN attack
Service Filtering
The following services can be blocked based on your specific need.
Ping from External Network
Telnet from External Network
FTP from External Network
DNS from External Network
IKE from External Network
RIP from External Network
DHCP from External Network
ICMP from LAN