ZyWALL 5/35/70 Series User’s Guide
Table 223 Generic Filter Rule Menu Fields
FIELD | DESCRIPTION |
|
|
More | If Yes, a matching packet is passed to the next filter rule before an action is taken; else the |
| packet is disposed of according to the action fields. |
| If More is Yes, then Action Matched and Action Not Matched will be No. |
|
|
Log | Select the logging option from the following: |
| None - No packets will be logged. |
| Action Matched - Only packets that match the rule parameters will be logged. |
| Action Not Matched - Only packets that do not match the rule parameters will be logged. |
| Both – All packets will be logged. |
Action | Select the action for a packet matching the rule. |
Matched | Options are Check Next Rule, Forward and Drop. |
| |
|
|
Action Not | Select the action for a packet not matching the rule. |
Matched | Options are Check Next Rule, Forward and Drop. |
| |
|
|
Once you have completed filling in Menu 21.1.1.1 - Generic Filter Rule, press [ENTER] at the message “Press ENTER to Confirm” to save your configuration, or press [ESC] to cancel. This data will now be displayed on Menu 21.1.1 - Filter Rules Summary.
44.3 Example Filter
Let’s look at an example to block outside users from accessing the ZyWALL via telnet. Please see our included disk for more example filters.
Figure 347 Telnet Filter Example
1Enter 21 from the main menu to open Menu 21 - Filter and Firewall Setup.
2Enter 1 to open Menu 21.1 - Filter Set Configuration.
3Enter the index of the filter set you wish to configure (say 3) and press [ENTER].
4Enter a descriptive name or comment in the Edit Comments field and press [ENTER].
5Press [ENTER] at the message [Press ENTER to confirm] to open Menu 21.1.3 - Filter Rules Summary.
6Enter 1 to configure the first filter rule (the only filter rule of this set). Make the entries in this menu as shown in the following figure.
589 | Chapter 44 Filter Configuration |