HP Firewall manual Adding an interzone rule, Fields of the interzone rule list, Filed Description

Page 77

Dest IP

Query interzone rules by destination IP.

 

 

Time Range

Query interzone rules by time range.

 

 

Policy

Query interzone rules by policy.

 

 

Status

Query interzone rules by status (enabled, disabled, or both)

 

 

Referenced

Query interzone rules by reference status (referenced, not referenced, or both)

 

 

Table 84 Fields of the interzone rule list

Filed

Description

 

 

Src Zone

Source zone of the interzone rule

 

 

 

Dest Zone

Destination zone of the interzone rule

 

 

 

 

ID of the interzone rule

 

When you create an interzone rule, the system automatically assigns an ID to the

ID

rule according to the number of existing rules for the source zone and destination

zone pair, starting from 0. For example, the first rule created for the source zone

 

 

Trust and the destination zone DMZ is numbered 0, the second rule created for the

 

same source zone and destination zone pair is numbered 1.

 

 

 

Src IP

Source IP address of the interzone rule

 

 

 

Dest IP

Destination IP address of the interzone rule

 

 

 

Service

All services of the interzone rule

 

 

 

Time Range

Time range during which the interzone rule takes effect

 

 

 

Action

Filtering action of the interzone rule

 

 

 

Description

Descriptive information about the interzone rule

 

 

 

Status

Whether the interzone rule is enabled or disabled

 

 

 

Logging

Whether logging is enabled for the interzone rule

 

 

 

Referenced

Whether the interzone rule is referenced or not

 

 

 

 

Policies that the interzone rule is in.

Policy

You can click a policy name to enter the page for managing the policy's rules. See

 

Rule management.”

 

 

 

 

 

Operation

Click the

 

icon to modify the interzone rule.

Click the

 

icon to copy the interzone rule.

 

 

 

 

 

 

 

 

Return to Interzone rule management functions.

Adding an interzone rule

From the navigation tree of the firewall management component, select Interzone rules under Security Policy Management. Click Add to enter the Adding an interzone rule page and configure the rule as shown in Figure 77 and Table 85.

73

Image 77
Contents HP A-IMC Firewall Manager Page Contents Page What HP A-IMC Firewall Manager can do Introduction to HP A-IMC Firewall ManagerRegistering the firewall manager Installing the firewall managerRegister your license Uninstalling the firewall managerDevice management Device management Operator management System configurationManaging devices Device managementDevice query option Function DescriptionOption Description Fields of the device listReturn to Device management functions Add a device Device configuration itemsTelnet Password, Snmp Version, Community String for Reading, Device information Fields of the device software list Device software managementDeploying software to devices Deploying software to devicesRequired Task Name Return to Device software management functions Software backup resultFields of the software backup result list Device config managementBacking up configuration files Restoring a configuration fileBacking up configuration files Fields of the device configuration management listDevice configuration information management interface Running Config Fields of the configuration label listTab Description LabelCompare two configuration files Draft list Fields of the draft list Fields of the running configuration listManaging device groups Configuration guideManaging batch import Adding a device group Device group listDevice group management functions Fields of the device group listDevice event list Managing eventsDevice event query options OptionFields of the device event list Device interface event listDevice interface event query options OptionDescriptionTemplate list Managing device access templatesFields of the template list Return to Template management functionsAdding a template Add a template Template configuration itemsManaging the device software database Device software database query option Importing device softwareFields of the device software database list Importing device softwareFields of the deployment task list Managing deployment tasksDeployment task query option Managing operators Operator managementUser levels and the rights User level RightsAdding an operator Operator listOperator management functions Function Description Fields of the operator listManaging operation logs Operator configuration itemsItemDescription Changing your login passwordFields of the operation log list Configuring management ports System configurationConfiguring system parameter Configure the mail server Mail server configuration items Configuring the mail serverFilter list Managing filtersFields of the filter list Filter listReturn to Filter management functions Adding a filterFieldDescription Ldap server list Managing Ldap serversLdap server list Adding an Ldap serverReturn to Ldap server management functions Adding an Ldap serverFields of the Ldap server list Monitoring the disk space Managing log retention timeActual free disk space is lower than this value Free disk space monitoring Managing subsystemsSubsystem information Fields of the subsystem list Adding a subsystemPage Snapshot of events Attack events monitoringFields in the event snapshot lists Snapshot of events Event snapshot query optionsFields of the recent events list Recent events listEvent overview Event analysisDevice monitoring Are under your management will appear in the drop-down list Top 10 attack events contrast graph Event detailsAttack event details Event details query options Fields of the attack event details list Report exporting managementFields of the report export task list Report export file listReport export task management functions Report export file listReturn to Report export task management functions Event auditingAdding a report export task Abnormal traffic log auditing Inter-zone access log auditingOperation log auditing Blacklist log auditingOperation log auditing Other log auditingMpls log auditing NAT log auditingSecurity zone list Security policy managementSecurity zones Adding a security zone Security zone listFields of the security zone list Return to Security zone management functionsTime ranges Security zone configuration itemImporting security zones from a device Time range listAdding a time range Time range listFields of the time range list Return to Time range management functionsFields of the predefined service list ServicesPredefined services Return to Service management functions User-defined servicesType a name for the user-defined service Service group management Fields of the service group list Service groupsAdd a service group Service group configuration items Fields of the host address list IP addressesHost addresses Add a host address Host address configuration items Address range management Fields of the address range list Address rangesSubnet addresses Address range configuration itemsAdd an subnet address Subnet address configuration items IP address groups Add an IP address group IP address group configuration items Interzone rule list Interzone rulesInterzone rule query options Interzone rule listFields of the interzone rule list Adding an interzone ruleFiled Description Return to Interzone rule management functionsAdd an interzone rule Interzone rule configuration items Add source IP addresses for the interzone rule Interzone policy list Interzone policiesInterzone policy list Adding an interzone policyRule management Adding an interzone policyFields of the interzone policy list Return to Interzone policy management functionsRule management Fields of the policy’s rule list Move rules Sorting interzone rulesInterzone policy application list Interzone policy applicationsInterzone policy application query options Fields of the interzone policy application listReturn to Interzone policy application management functions Applying interzone policiesApplied rules list Zone and destination zone pair is numbered Managing firewall devices Firewall device managementFirewall management functions Firewall device listAdding firewall devices Firewall device listQuery options on the firewall device management Fields of the firewall device listViewing device statistics Managing the device configuration databaseFields of the configuration segments list Configuration segment listReturn to Configuration segment management functions Adding a configuration segmentConfiguration segment configuration items Importing configuration segments from deviceDeploying a configuration segment Configure deployment task attributes Deployment task list Deployment task listFields of the deployment task list Comprehensive analysis SSL VPN log auditing Comprehensive analysisOnline users Daily user statistics Online users trendsDaily user statistics User Count field shows the count of login times on that daySSL VPN log auditing User access records auditingAuthentication failure auditing Resource access auditingAuthentication failure auditing Adding devices to the firewall manager Configuration procedureNetwork requirements Add a device to the firewall management component Configuring the firewall device Configuration proceduresEnter the following commands in the CLI Configuring the Firewall ManagerConfigure Snmp on the FW device Add the FW device to the Firewall Manager Enable logging and send logs to Firewall ManagerConfigure a log host Userlog Configuring intrusion detectionScanning detection Blacklist Urpf check Displaying log report on the firewall webpage VerificationFirewall logs and Firewall Manager analysis Intrusion Policy Log User log Recent list Inter-zone access logs Blacklist logs Operation Logs Contacting HP Subscription serviceRelated information DocumentsSymbols Command conventionsConventions GUI conventionsPort numbering in examples Network topology iconsTime ranges,58 IndexViewing device statistics,85 User access records auditing,96
Related manuals
Manual 60 pages 30 Kb Manual 3 pages 40.21 Kb

Firewall specifications

HP Firewall, often positioned as a key component in enterprise network security, is designed to protect sensitive data and maintain secure communications across various environments. The primary role of a firewall is to monitor incoming and outgoing network traffic and make decisions based on a set of security rules. HP Firewalls utilize a combination of hardware and software to create a robust security framework that helps organizations manage their network perimeter effectively.

One of the main features of HP Firewall is its advanced security protocols that provide deep packet inspection. This technology scrutinizes packet contents beyond the header information, analyzing data flows for signs of malicious activity. By employing Stateful Inspection, HP Firewalls maintain a state table that logs active connections, allowing the firewall to evaluate packets in the context of established sessions. This helps optimize resource usage while delivering high-performance security.

Another characteristic of HP Firewall is its integration with HP's broader security ecosystem. By working seamlessly with other HP security products, such as HP Secure Access and HP Advanced Malware Protection, organizations can deploy a multi-layered security strategy. This integration enables centralized management, streamlining security policies and improving response times against threats.

HP Firewalls also feature next-generation capabilities. This includes intrusion prevention systems (IPS) that actively monitor network traffic for suspected threats and automatically take action to block potential breaches. Additionally, these firewalls come with application awareness features, allowing organizations to enforce policies based on specific applications rather than simply based on port or protocol. This granularity enhances control over minimal use of bandwidth while simultaneously mitigating risks from unwanted applications.

Furthermore, HP Firewall models are equipped with user identity management, allowing organizations to apply security policies based on user roles and the specific needs of the business. This significantly improves the overall security posture as it adds another layer of control.

Scalability is a notable characteristic of HP Firewalls, making them suitable for both small businesses and large enterprises. Organizations can expand their security infrastructure as needed while maintaining efficiency.

In summary, HP Firewalls deliver advanced security features, scalability, and seamless integration within the HP security ecosystem. Their emphasis on deep packet inspection, real-time monitoring, and user identity management make them a powerful asset in the defense against cyber threats, ensuring that organizations can protect their critical data and maintain the integrity of their network environments.