beautypg.com

Table 51 creating/editing a firewall rule – ZyXEL Communications ZyXEL ZyWALL 5 User Manual

Page 176

background image

ZyWALL 5 User’s Guide

Chapter 10 Firewall Screens

175

The following table describes the labels in this screen.

Table 51 Creating/Editing A Firewall Rule

LABEL

DESCRIPTION

Edit Source/

Destination

Address

Address Type

Do you want your rule to apply to packets with a particular (single) IP, a range of IP

addresses (e.g., 192.168.1.10 to 192.169.1.50), a subnet or any IP address?

Select an option from the drop-down list box that includes: Single Address, Range

Address, Subnet Address and Any

Address.

Start IP Address

Enter the single IP address or the starting IP address in a range here.

End IP Address

Enter the ending IP address in a range here.

Subnet Mask

Enter the subnet mask here, if applicable.

Add

Click Add to add a new address to the Source or Destination Address(es) box.

You can add multiple addresses, ranges of addresses, and/or subnets.

Modify

To edit an existing source or destination address, select it from the box and click

Modify.

Delete

Highlight an existing source or destination address from the Source or Destination

Address(es) box above and click Delete to remove it.

Edit Service

Available/

Selected Services

Please see

Table 53 on page 180

for more information on services available.

Highlight a service from the Available Services box on the left, then click >> to add

it to the Selected Service(s) box on the right. To remove a service, highlight it in

the Selected Service(s) box on the right, then click <<.

Custom Service

Add

Click this button to bring up the screen that you use to configure a new custom

service that is not in the predefined list of services.

Edit

Select a custom service (denoted by an *) from the Available Services list and

click this button to edit the service.

Delete

Select a custom service (denoted by an *) from the Available Services list and

click this button to remove the service.

Edit Schedule

Day to Apply

Select everyday or the day(s) of the week to apply the rule.

Time of Day to

Apply (24-Hour

Format)

Select All Day or enter the start and end times in the hour-minute format to apply

the rule.

Actions When

Matched

Log Packet

Information When

Matched

This field determines if a log for packets that match the rule is created (Enable) or

not (Disable). Go to the Log Settings page and select the Access Control logs

category to have the ZyWALL record these logs.

Send Alert

Message to

Administrator

When Matched

Select the check box to have the ZyWALL generate an alert when the rule is

matched.

Action for

Matched Packets

Use the drop-down list box to select whether to discard (Block) or allow the

passage of (Forward) packets that match this rule.