Chapter 6 Tutorials

Figure 110 Network > Virtual Server > Add

6.8.3 How to Set Up a Firewall Rule For H.323

Here is how to configure a firewall rule to allow H.323 (TCP port 1720) traffic received on the WAN_IP-for-H323 IP address to go to LAN1 IP address 192.168.1.56.

1Click Firewall. In From Zone, select WAN; in To Zone, select LAN1.

2The default rule for WAN-to-LAN1 traffic drops all traffic. You want to allow H.323 access through IP address 10.0.0.8, so add a rule before the default rule. Click the Add icon at the top of the column.

Figure 111 Firewall: WAN to LAN 1

3Configure the screen as follows and click OK. LAN_H323 is the destination because the ZyWALL applies the virtual server to traffic before applying the firewall rule.

 

161

ZyWALL USG 100/200 Series User’s Guide