ZyXEL Communications P-660HWP-Dx Network Router User Manual


 
Chapter 11 Firewall Configuration
P-660HWP-Dx User’s Guide
52
Figure 98 Firewall Rules
The following table describes the labels in this screen.
Table 60 Firewall Rules
LABEL DESCRIPTION
Firewall Rules
Storage Space
in Use
This read-only bar shows how much of the P-660HWP-Dx's memory for recording
firewall rules it is currently using. When you are using 80% or less of the storage
space, the bar is green. When the amount of space used is over 80%, the bar is red.
Packet
Direction
Use the drop-down list box to select a direction of travel of packets for which you
want to configure firewall rules.
Create a new
rule after rule
number
Select an index number and click Add to add a new firewall rule after the selected
index number. For example, if you select “6”, your new rule becomes number 7 and
the previous rule 7 (if there is one) becomes rule 8.
The following read-only fields summarize the rules you have created that apply to
traffic traveling in the selected packet direction. The firewall rules that you configure
(summarized below) take priority over the general firewall action settings in the
General screen.
# This is your firewall rule number. The ordering of your rules is important as rules are
applied in turn.
Active This field displays whether a firewall is turned on or not. Select the check box to
enable the rule. Clear the check box to disable the rule.
Source IP This drop-down list box displays the source addresses or ranges of addresses to
which this firewall rule applies. Please note that a blank source or destination
address is equivalent to Any.
Destination IP This drop-down list box displays the destination addresses or ranges of addresses to
which this firewall rule applies. Please note that a blank source or destination
address is equivalent to Any.
Service This drop-down list box displays the services to which this firewall rule applies. See
Section 11.8 on page 61 for more information.
Action This field displays whether the firewall silently discards packets (Drop), discards
packets and sends a TCP reset packet or an ICMP destination-unreachable
message to the sender (Reject) or allows the passage of packets (Permit)
Schedule This field tells you whether a schedule is specified (Yes) or not (No).