ProSecure Unified Threat Management UTM10 or UTM25 Reference Manual

Table 5-3. Inbound Rules Overview (continued)

Setting

Description (or Subfield and Description)

 

 

WAN Users

The settings that determine which Internet locations are covered by the rule, based

 

on their IP address. The options are:

 

• Any. All Internet IP address are covered by this rule.

 

• Single address. Enter the required address in the start field.

 

• Address range. Enter the Start and Finish fields.

 

 

DMZ Users

The settings that determine which DMZ computers on the DMZ network are affected

 

by this rule. The options are:

 

• Any. All PCs and devices on your DMZ network.

 

• Single address. Enter the required address to apply the rule to a single PC on the

 

DMZ network.

 

• Address range. Enter the required addresses in the Start and Finish fields to apply

 

the rule to a range of DMZ computers.

 

Note: This field is not applicable to inbound DMZ WAN rules.

QoS Profile

The priority assigned to IP packets of this service. The priorities are defined by “Type

 

of Service (ToS) in the Internet Protocol Suite” standards, RFC 1349. The QoS profile

 

determines the priority of a service which, in turn, determines the quality of that

 

service for the traffic passing through the firewall.

 

The UTM marks the Type Of Service (ToS) field as defined in the QoS profiles that

 

you create. For more information, see “Creating Quality of Service (QoS) Profiles” on

 

page 5-33.

 

Note: There is no default QoS profile on the UTM. After you have created a QoS

 

profile, it can become active only when you apply it to a non-blocking inbound or

 

outbound firewall rule.

 

 

Log

The settings that determines whether packets covered by this rule are logged. The

 

options are:

 

• Always. Always log traffic considered by this rule, whether it matches or not. This is

 

useful when debugging your rules.

 

• Never. Never log traffic considered by this rule, whether it matches or not.

 

 

Bandwidth Profile

Bandwidth limiting determines the way in which the data is sent to and from your

 

host. The purpose of bandwidth limiting is to provide a solution for limiting the

 

outgoing and incoming traffic, thus preventing the LAN users from consuming all the

 

bandwidth of the Internet link. Bandwidth limiting occurs in the following ways:

 

• For outbound traffic: on the available WAN interface in the single WAN port mode

 

and auto-rollover mode, and on the selected interface in load balancing mode.

 

• For inbound traffic: on the LAN interface for all WAN modes.

 

Note: Bandwidth Limiting does not apply to the DMZ interface.

Firewall Protection

5-9

v1.0, September 2009

Page 123
Image 123
NETGEAR UTM25-100NAS, UTM10EW-100NAS, UTM25EW-100NAS manual By this rule. The options are