Configuration | Policy Management | Traffic Management | Rules
13-9
VPN 3000 Concentrator Series User Guide
Configuration | Policy Management | Traffic Management | Rules
This section of the Manager lets you add, configure, modify, copy, and delete filter rules. You use rules
to construct filters.
Caution: The Cisco-supplied default rules are intended as templates that you should examine and modify to fit
your network and security needs. Unmodified, or incorrectly applied, they could present sec urity risks.
You should also be especially careful about adding rules to the Public (Default) filter. For example, the
default Incoming HTTP rules are intended to allow an administrator outside the private network to manage
the VPN Concentrator with a browser. Unmodified, they could allow browser connections to any system
on the private network. If you apply these rules to a filter, you should at least ch ange the Source and
Destination Address to limit the connections.
Figure 13-7: Configuration | Policy Management | Traffic Management | Rules screen

Filter Rules

The Filter Rules list shows the configured rules that are available to apply to filters. The list shows the
rule name and the action/direction in parentheses. The rules are listed in the order they are configured.
Cisco supplies several default rules that you can modify and use. See Table 13-1 for their parameters,
and see Configuration | Policy Management | Traffic Management | Rules | Add for explanations of the
parameters.