Chapter 15 Firewall Configuration

Figure 141 Firewall Rules

The following table describes the labels in this screen.

Table 92 Firewall Rules

LABEL

DESCRIPTION

Firewall Rules

This read-only bar shows how much of the ZyXEL Device's memory for recording

Storage Space

firewall rules it is currently using. When you are using 80% or less of the storage

in Use

space, the bar is green. When the amount of space used is over 80%, the bar is red.

 

 

Packet

Use the drop-down list box to select a direction of travel of packets for which you

Direction

want to configure firewall rules.

 

 

Create a new

Select an index number and click Add to add a new firewall rule after the selected

rule after rule

index number. For example, if you select “6”, your new rule becomes number 7 and

number

the previous rule 7 (if there is one) becomes rule 8.

 

 

 

The following read-only fields summarize the rules you have created that apply to

 

traffic traveling in the selected packet direction. The firewall rules that you configure

 

(summarized below) take priority over the general firewall action settings in the

 

General screen.

 

 

#

This is your firewall rule number. The ordering of your rules is important as rules are

 

applied in turn.

 

 

Active

This field displays whether a firewall is turned on or not. Select the check box to

 

enable the rule. Clear the check box to disable the rule.

 

 

Source IP

This drop-down list box displays the source addresses or ranges of addresses to

 

which this firewall rule applies. Please note that a blank source or destination

 

address is equivalent to Any.

 

 

Destination IP

This drop-down list box displays the destination addresses or ranges of addresses to

 

which this firewall rule applies. Please note that a blank source or destination

 

address is equivalent to Any.

 

 

Service

This drop-down list box displays the services to which this firewall rule applies. See

 

Appendix E on page 475 for more information.

 

 

Action

This field displays whether the firewall silently discards packets (Drop), discards

 

packets and sends a TCP reset packet or an ICMP destination-unreachable

 

message to the sender (Reject) or allows the passage of packets (Permit).

 

 

Schedule

This field tells you whether a schedule is specified (Yes) or not (No).

 

 

Log

This field shows you whether a log is created when packets match this rule (Yes) or

 

not (No).

 

 

250

 

P-2602HWLNI User’s Guide