Device Group
Issue 4 May 2005 173
The predefined services can be used as a general service set or as a starting point for creating
a customized service, or user-defined service, that is required for use in the firewall definition.
The service types IP, TCP, UDP, and ICMP are provided and parameters for each of these types
can be specified in the user-defined service. A comprehensive suite of UDP, TCP, and ICMP
filter options are provided.
One or more predefined service can be specified in each firewall rule using the firewall wizard.
Note:
Note: The predefined services can be used as a basis for user-defined services,
however; the predefined services cannot be modified. To create a user-defined
service, click New Object>Services.
Device Group
Device groups help to minimize firewall configuration complexity by allowing network
administrator’s to create groups of devices that share a common firewall configuration.

To create a device group object:

1. Move to the Configuration Console window.
2. From the Objects column, select Device Group.
3. Click New Object to start the New Device Group Wizard.
4. In the Name text box, type in a name for your new Device Group.
5. Click Apply.
6. To create another Device Group, type in a name for your new Device Group otherwise click
Close.
7. Select the devices to be included in the Device Group from the Available Members column.
8. Click Move Left to move the selected members from the Available Members column to the
Group Members column.
Denial of Service
For servers running VPNos 4.2, configure the DOS to protect the security gateway from att ack s
by hackers.
A domain has default Denial of Service (DOS) configuration settings that apply to al l the devices
in the domain. These settings can be seen from the Firewall Object’s Denial of Service tab.