Firewall Rule Configuration Example - ZyXEL Communications ZyWALL USG 2000 User Manual

Unified security gateway
Hide thumbs Also See for ZyWALL USG 2000:
Table of Contents

Advertisement

• The first row allows any LAN computer to access the IRC service on the WAN by
logging into the ZyWALL with the CEO's user name.
• The second row blocks LAN access to the IRC service on the WAN.
• The third row is the firewall's default policy of allowing all traffic from the LAN to
go to the WAN.
The rule for the CEO must come before the rule that blocks all LAN to WAN IRC
traffic. If the rule that blocks all LAN to WAN IRC traffic came first, the CEO's IRC
traffic would match that rule and the ZyWALL would drop it and not check any
other firewall rules.

24.1.4 Firewall Rule Configuration Example

The following Internet firewall rule example allows Doom players from the WAN to
IP addresses 192.168.1.10 through 192.168.1.15 (Dest_1) on the LAN.
Click Configuration > Firewall. In the summary of firewall rules click Add in the
1
heading row to configure a new first entry. Remember the sequence (priority) of
the rules is important since they are applied in order.
Figure 316 Firewall Example: Firewall Screen
At the top of the screen, click Create new Object > Address.
2
The screen for configuring an address object opens. Configure it as follows and
3
click OK.
Figure 317 Firewall Example: Create an Address Object
Click Create new Object > Service.
4
ZyWALL USG 2000 User's Guide
Chapter 24 Firewall
429

Advertisement

Table of Contents
loading

Table of Contents