4.
Click OK
Configure the rules:
1.
Go to: Policies > Firewalling > Main IP Rules > Add > IP Rule
2.
Now enter:
•
Name: http_allow
•
Action: Allow
•
Service: http
•
Source Interface: lan
•
Destination Interface: any
•
Source Network: 10.0.0.0/24
•
Destination Network: all-nets
3.
Click OK
4.8.4. Spanning Tree BPDU Support
NetDefendOS includes support for relaying the Bridge Protocol Data Units (BPDUs) across the
NetDefend Firewall. BPDU frames carry Spanning Tree Protocol (STP) messages between layer 2
switches in a network. STP allows the switches to understand the network topology and avoid
the occurrences of loops in the switching of packets.
The diagram below illustrates a situation where BPDU messages would occur if the administrator
enables the switches to run the STP protocol. Two NetDefend Firewalls are deployed in
transparent mode between the two sides of the network. The switches on either side of the
firewall need to communicate and require NetDefendOS to relay switch BPDU messages in order
that packets do not loop between the firewalls.
388
Chapter 4: Routing