ZyWALL 10/50 Internet Security Gateway

Table 13-3 Creating/Editing A Firewall Rule

FIELD

DESCRIPTION

OPTIONS

 

 

 

Destination Address

Click DestAdd to add a new address, DestEdit to

DestAdd

 

edit an existing one or DestDelete to delete one.

DestEdit

 

Please see the following section on adding and

 

 

 

editing destination addresses.

DestDelete

 

 

 

Services

Please see Table 13-2for more information on

>>

Available/Selected

services available. Highlight a service from the

<<

Available Services box on the left, then click >> to

Services

 

add it to the Selected Services box on the right. To

 

 

 

 

remove a service, highlight it in the Selected

 

 

Services box on the right, then click <<.

 

Action for Matched

Should packets that match this rule be blocked or

Block

Packets

forwarded? Make your choice from the drop down

Forward

 

list box. Note that Block means the firewall silently

 

 

 

discards the packet.

 

 

 

 

Log

This field determines if a log is created for packets

Match

 

that match the rule, don’t match the rule, both or no

Not Match

 

log is created.

 

Both

 

 

 

 

None

 

 

 

Alert

Check the Alert check box to determine that this

 

 

rule generates an alert when the rule is matched.

 

When you have finished, click Apply to save your customized settings and exit this screen, Cancel to exit this screen without saving, or Help for online HTML help on fields in this screen.

13.5.2 Source and Destination Addresses

To add a new source or destination address, click SrcAdd or DestAdd from the previous screen. To edit an existing source or destination address, select it from the box and click SrcEdit or DestEdit from the previous screen. Either action displays the following screen.

Creating Custom Rules

13-11