ZyWALL 10 Internet Security Gateway

Table 16-3 Creating/Editing A Firewall Rule

FIELD

DESCRIPTION

OPTIONS

Source Address

Press SrcAdd to add a new address,

SrcAdd

 

SrcEdit to edit an existing one or SrcDelete

SrcEdit

 

to delete one. Please see the next section

 

 

 

for more information on adding and editing

SrcDelete

 

source addresses.

 

Destination Address

Press DestAdd to add a new address,

DestAdd

 

DestEdit to edit an existing one or

DestEdit

 

DestDelete to delete one. Please see the

 

 

 

next information on adding and editing

DestDelete

 

destination addresses.

 

Services

Please see Table 16-2for more information

>>

Available/Selected

on services available. Highlight a service

<<

from the Available Services box on the left,

 

 

 

then press >> to add it to the Selected

 

 

Services box on the right. To remove a

 

 

service, highlight it in the Selected

 

 

Services box on the right, then press <<.

 

Action for Matched Packets

Should packets that match this rule be

Block

 

blocked or forwarded? Make your choice

Forward

 

from the drop down list box. Note that Block

 

 

 

means the firewall silently discards the

 

 

packet.

 

Log

This field determines if a log is created for

Match

 

packets that match the rule, don’t match the

Not Match

 

rule, both or no log is created.

 

Both

 

 

 

 

None

 

 

 

Alert

Check the Alert check box to determine that

 

 

this rule generates an alert when the rule is

 

 

matched.

 

When you have finished, click Apply to save your customized settings and exit this screen, Cancel to exit this screen without saving, or Help for online HTML help on fields in this screen.

Creating Custom Rules

16-11