15

Firewall Configuration

This chapter shows you how to enable and configure the ZyXEL Device firewall.

15.1 Access Methods

The web configurator is, by far, the most comprehensive firewall configuration tool your ZyXEL Device has to offer. For this reason, it is recommended that you configure your firewall using the web configurator. CLI commands provide limited configuration options and are only recommended for advanced users.

15.2 General Firewall Policy Overview

Firewall rules are grouped based on the direction of travel of packets to which they apply:

LAN to LAN/ Router

WAN to LAN

LAN to WAN

WAN to WAN/ Router

"The LAN includes both the LAN port and the WLAN.

By default, the ZyXEL Device’s stateful packet inspection allows packets traveling in the following directions:

LAN to LAN/ Router

This allows computers on the LAN to manage the ZyXEL Device and communicate between networks or subnets connected to the LAN interface.

LAN to WAN

By default, the ZyXEL Device’s stateful packet inspection drops packets traveling in the following directions:

WAN to LAN

WAN to WAN/ Router

This prevents computers on the WAN from using the ZyXEL Device as a gateway to communicate with other computers on the WAN and/or managing the ZyXEL Device.

 

245

P-2602HWLNI User’s Guide