Cisco SA520-K9 Administration Guide - Page 113

Prioritizing Firewall Rules, > Firewall > IPv4 Rules

Page 113 highlights

Firewall Configuration Prioritizing Firewall Rules 4 • External IP Address: Select one of the following options to specify the IP address that is exposed to the public: - Dedicated WAN: The public will connect to this service by using the IP address that is associated with your WAN interface. - Optional WAN: The public will connect to this service by using the IP address that is associated with the WAN interface on the Optional port. - Other: The public will connect to this service by using another IP address that your ISP has provided to you. If you choose this option, enter the address in the Other IP Address field. STEP 5 Click Apply to save your settings. The firewall rule appears on the Firewall Rules page. Prioritizing Firewall Rules If a firewall policy contains more than one rule that permits traffic, you can reorder them by priority. You can move a rule up, move a rule down, or move it to a specified location in the firewall rules list. NOTE This feature only applies to IPv4 firewall rules. STEP 1 Click Firewall > Firewall > IPv4 Rules, or you can use the Getting Started (Advanced) page. In the Firewall and NAT Rules section, click Configure Firewall and NAT Rules. The IPv4 Firewall Rules window opens. The firewall rules appear in the List of Available Firewall Rules table. The list includes all firewall rules for controlling traffic from a particular zone to a particular destination. STEP 2 To view the list of rules belonging to the same group, choose the source and destination from the From Zone and To Zone drop-down menus and click Display Rules. Only the rules for the specified security zones appear. For example: If you choose WAN and LAN from the Zone drop-down menus, only the rules for the WAN to LAN security zones appear. STEP 3 To reorder the rules, click Move. Cisco SA500 Series Security Appliances Administration Guide 113

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240

Firewall Configuration
Prioritizing Firewall Rules
Cisco SA500 Series Security Appliances Administration Guide
113
4
External IP Address:
Select one of the following options to specify the IP
address that is exposed to the public:
-
Dedicated WAN:
The public will connect to this service by using the IP
address that is associated with your WAN interface.
-
Optional WAN:
The public will connect to this service by using the IP
address that is associated with the WAN interface on the Optional port.
-
Other:
The public will connect to this service by using another IP address
that your ISP has provided to you. If you choose this option, enter the
address in the
Other IP Address
field.
STEP
5
Click
Apply
to save your settings.
The firewall rule appears on the Firewall Rules page.
Prioritizing Firewall Rules
If a firewall policy contains more than one rule that permits traffic, you can reorder
them by priority. You can move a rule up, move a rule down, or move it to a
specified location in the firewall rules list.
NOTE
This feature only applies to IPv4 firewall rules.
STEP 1
Click
Firewall
> Firewall > IPv4 Rules
, or you can use the Getting Started
(Advanced) page. In the
Firewall and NAT Rules
section, click
Configure Firewall
and NAT Rules
.
The IPv4 Firewall Rules window opens.
The firewall rules appear in the List of Available Firewall Rules table. The list
includes all firewall rules for controlling traffic from a particular zone to a particular
destination.
STEP
2
To view the list of rules belonging to the same group, choose the source and
destination from the
From Zone
and
To Zone
drop-down menus and click
Display
Rules
. Only the rules for the specified security zones appear.
For example: If you choose WAN and LAN from the Zone
drop-down menus, only
the rules for the WAN to LAN security zones appear.
STEP
3
To reorder the rules, click
Move
.