beautypg.com

Interzone rule list – H3C Technologies H3C SecCenter Firewall Manager User Manual

Page 93

background image

87

Function Description

Deleting interzone rules

Allows you to delete interzone rules.
Follow these steps:

1.

Select the check boxes before the interzone rules to be deleted.

2.

Click Delete.

IMPORTANT:

Interzone rules that are referenced cannot be deleted.

CAUTION:

If an interzone rule is also managed by other administrators, it cannot be modified. To modify such rule,
copy the rule to generate a new one, and then make modifications.

Interzone rule list

From the navigation tree of the firewall management component, select Interzone Rules under Security

Policy Management. The interzone rule list is at the lower part. See

Figure 89

. This list includes all

interzone rules in the system.

Table 88

describes the interzone rule query options and

Table 89

describes

the fields of the interzone rule list.

Table 88 Interzone rule query options

Option Description

Src Zone

Query interzone rules by source zone.

Dest Zone

Query interzone rules by destination zone.

Action

Query interzone rules by filtering action.

Src IP

Query interzone rules by source IP.

Dest IP

Query interzone rules by destination IP.

Time Range

Query interzone rules by time range.

Policy

Query interzone rules by policy.

Status

Query interzone rules by status (enabled, disabled, or both)

Referenced

Query interzone rules by reference status (referenced, not referenced, or both)

Virtual Device Group

Query interzone rules by virtual device group.

Table 89 Fields of the interzone rule list

Filed Description

Src Zone

Source zone of the interzone rule.

Dest Zone

Destination zone of the interzone rule.

ID

ID of the interzone rule.
When you create an interzone rule, the system automatically assigns an ID to the

rule according to the number of existing rules for the source zone and destination
zone pair, starting from 0. For example, the first rule created for the source zone

Trust and the destination zone DMZ is numbered 0, the second rule created for the

same source zone and destination zone pair is numbered 1.

Src IP

Source IP address of the interzone rule.