beautypg.com

Creating custom rules, Rules overview, Chapter 16 creating custom rules – ZyXEL Communications 10 User Manual

Page 197: 1 rules overview

background image

ZyWALL 10~100 Series Internet Security Gateway

Creating Custom Rules

16-1

Chapter 16

Creating Custom Rules

This chapter contains instructions for defining both Local Network and Internet rules. DMZ applies

to the ZyWALL 100.

16.1 Rules Overview

Firewall rules are grouped based on the direction of travel of packets to which they apply:

• LAN to LAN/ZyWALL

• WAN to LAN

• DMZ to LAN

• LAN to WAN

• WAN to WAN/ZyWALL

• DMZ to WAN

• LAN to DMZ

• WAN to DMZ

• DMZ to DMZ/ZyWALL

DMZ is not available on all models.

By default, the ZyWALL’s stateful packet inspection allows packets traveling in the following directions:

• LAN to LAN/ZyWALL

This allows computers on the LAN to manage the ZyWALL and communicate between networks or
subnets connected to the LAN interface.

• LAN to WAN
• LAN to DMZ
• WAN to DMZ
• DMZ to WAN

By default, the ZyWALL’s stateful packet inspection blocks packets traveling in the following directions:

• WAN to LAN
• WAN to WAN/ZyWALL

This prevents computers on the WAN from using the ZyWALL as a gateway to communicate with
other computers on the WAN and/or managing the ZyWALL.

• DMZ to LAN
• DMZ to DMZ/ZyWALL