ZyXEL USG 200/100-PLUS/100/50 User Guide - Page 138

The Device Service Screen

Page 138 highlights

Chapter 9 Firewall Table 51 Firewall Rules: Add/Edit LABEL DESCRIPTION Source IP Select Destination Device Destination IP Select Service Protocol Enter the source IP address, or select Any to apply firewall rule to any source IP addresses. Select the destination device to which the firewall rule applies. If you select Specific Address IP, enter the source IP address in the field below. If you do not select Any, enter the destiniation IP address in this field. Select the transport layer protocol that defines your customized port from the dropdown list box. The specific protocol rule sets you add in the Configuration > Firewall / Security > Service > Add screen display in this list. This field is displayed only when you select Any in Select Service. Policy Enable Rate Limit Choose the IP port (ALL, TCP, UDP, ICMP, or ICMP6) that defines your customized port from the drop-down list box. Use the drop-down list box to select whether to discard (DROP), deny and send an ICMP destination-unreachable message to the sender of (REJECT) or allow the passage of (ACCEPT) packets that match this rule. Select this check box to set a limit on the upstream/downstream transmission rate for the specified protocol. Scheduler Rules OK Cancel Specify how many packet(s) per Minute or Second the transmission rate is. Select a scheduler rule for this firewall rule form the drop-down list box. The scheduler rules available are the ones you create in the Configuration > Firewall / Security > Scheduler Rule screen. Click OK to save your changes. Click Cancel to restore your previously saved settings. 9.5 The Device Service Screen Use this screen to configure through which interfaces, which services can access the VPN2S. You can also specify the port numbers the services must use to connect to the VPN2S. Use the Trust Domain section in this screen to view a list of public IP addresses which are allowed to access the VPN2S through the services configured above. Click Configuration > Firewall / Security > Device Service to open the following screen. VPN2S User's Guide 138

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279

Chapter 9 Firewall
VPN2S User’s Guide
138
9.5
The Device Service Screen
Use this screen to configure through which interfaces, which services can access the VPN2S. You can
also specify the port numbers the services must use to connect to the VPN2S.
Use the
Trust Domain
section in this screen to view a list of public IP addresses which are allowed to
access the VPN2S through the services configured above.
Click
Configuration > Firewall / Security > Device Service
to open the following screen.
Source IP
Enter the source IP address, or select
Any
to apply firewall rule to any source IP
addresses.
Select Destination Device
Select the destination device to which the firewall rule applies. If you select
Specific
Address IP,
enter the source IP address in the field below.
Destination IP
If you do not select
Any
, enter the destiniation IP address in this field.
Select Service
Select the transport layer protocol that defines your customized port from the drop-
down list box. The specific protocol rule sets you add in the
Configuration > Firewall /
Security > Service > Add
screen display in this list.
Protocol
This field is displayed only when you select
Any
in
Select Service
.
Choose the IP port (
ALL, TCP, UDP, ICMP, or ICMP6
) that defines your customized port
from the drop-down list box.
Policy
Use the drop-down list box to select whether to discard (
DROP
), deny and send an
ICMP destination-unreachable message to the sender of (
REJECT
) or allow the
passage of (
ACCEPT
) packets that match this rule.
Enable Rate Limit
Select this check box to set a limit on the upstream/downstream transmission rate for
the specified protocol.
Specify how many
packet(s) per
Minute
or
Second
the transmission rate is.
Scheduler Rules
Select a scheduler rule for this firewall rule form the drop-down list box. The scheduler
rules available are the ones you create in the
Configuration > Firewall / Security >
Scheduler Rule
screen.
OK
Click
OK
to save your changes.
Cancel
Click
Cancel
to restore your previously saved settings.
Table 51
Firewall Rules: Add/Edit
LABEL
DESCRIPTION