ZyXEL Communications ZyWall 35 User Manual page 662

Internet security appliance
Hide thumbs Also See for ZyWall 35:
Table of Contents

Advertisement

ZyWALL 35 User's Guide
Table 30 Firewall Commands (continued)
FUNCTION
Rules
660
COMMAND
Config edit firewall set <set
#> tcp-idle-timeout <seconds>
Config edit firewall set <set
#> log <yes | no>
Config edit firewall set <set
#> rule <rule #> permit
<forward | block>
Config edit firewall set <set
#> rule <rule #> active <yes |
no>
Config edit firewall set <set
#> rule <rule #> protocol
<integer protocol value >
Config edit firewall set <set
#> rule <rule #> log <none |
match | not-match | both>
Config edit firewall set <set
#> rule <rule #> alert <yes |
no>
config edit firewall set <set
#> rule <rule #> srcaddr-
single <ip address>
config edit firewall set <set
#> rule <rule #> srcaddr-
subnet <ip address> <subnet
mask>
config edit firewall set <set
#> rule <rule #> srcaddr-range
<start ip address> <end ip
address>
config edit firewall set <set
#> rule <rule #> destaddr-
single <ip address>
DESCRIPTION
This command sets how long ZyWALL lets an
inactive TCP connection remain open before
considering it closed.
This command sets whether or not the
ZyWALL creates logs for packets that match
the firewall's default rule set.
This command sets whether packets that
match this rule are dropped or allowed
through.
This command sets whether a rule is enabled
or not.
This command sets the protocol specification
number made in this rule for ICMP.
This command sets the ZyWALL to log traffic
that matches the rule, doesn't match, both or
neither.
This command sets whether or not the
ZyWALL sends an alert e-mail when a DOS
attack or a violation of a particular rule occurs.
This command sets the rule to have the
ZyWALL check for traffic with this individual
source address.
This command sets a rule to have the
ZyWALL check for traffic from a particular
subnet (defined by IP address and subnet
mask).
This command sets a rule to have the
ZyWALL check for traffic from this range of
addresses.
This command sets the rule to have the
ZyWALL check for traffic with this individual
destination address.
Appendix L Firewall Commands

Advertisement

Table of Contents
loading

Table of Contents