Firewall Commands - ZyXEL Communications 1050 Cli Reference Manual

Zld based
Hide thumbs Also See for 1050:
Table of Contents

Advertisement

Chapter 14 Firewall
Your customized rules take precedence and override the ZyWALL's default settings. The
ZyWALL checks the schedule, user name (user's login name on the ZyWALL), source IP
address, destination IP address and IP protocol type of network traffic against the firewall
rules (in the order you list them). When the traffic matches a rule, the ZyWALL takes the
action specified in the rule.
For example, if you want to allow a specific user from any computer to access one zone by
logging in to the ZyWALL, you can set up a rule based on the user name only. If you also
apply a schedule to the firewall rule, the user can only access the network at the scheduled
time. A user-aware firewall rule is activated whenever the user logs in to the ZyWALL and
will be disabled after the user logs out of the ZyWALL.

14.2 Firewall Commands

The following table identifies the values required for many of these commands. Other input
values are discussed with the corresponding commands.
Table 49 Input Values for General Firewall Commands
LABEL
address_object
user_name
zone_object
schedule_object
service_name
The following table describes the commands available for the firewall. You must use the
configure terminal
commands.
Table 50 Command Summary: Firewall
COMMAND
[no] connlimit max-per-host <1..8192>
firewall <1..5000>
action <allow|deny|reject>
[no] activate
94
DESCRIPTION
The name of the IP address (group) object. You may use 1-31 alphanumeric
characters, underscores(
), or dashes (-), but the first character cannot be a
_
number. This value is case-sensitive.
The name of a user (group). You may use 1-31 alphanumeric characters,
underscores(
_
), or dashes (-), but the first character cannot be a number.
This value is case-sensitive.
The name of the zone. You may use 1-31 alphanumeric characters,
underscores(
), or dashes (-), but the first character cannot be a number.
_
This value is case-sensitive.
The name of the schedule. You may use 1-31 alphanumeric characters,
underscores(
_
), or dashes (-), but the first character cannot be a number.
This value is case-sensitive.
The name of the service (group). You may use 1-31 alphanumeric characters,
underscores(
), or dashes (-), but the first character cannot be a number.
_
This value is case-sensitive.
command to enter the configuration mode before you can use these
DESCRIPTION
Sets he highest number of sessions that the
ZyWALL will permit a host to have at one time.
The
no
command removes the settings.
Enters the firewall sub-command mode to set
a firewall rule.
<1..5000>
: the priority number of a firewall
rule.
Sets the action the ZyWALL takes when
packets match this rule.
Enables a firewall rule. The
disables the firewall rule.
ZyWALL (ZLD) CLI Reference Guide
no
command

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall usg 1000 cliZywall usg 300 cliZywall

Table of Contents