ZyXEL Communications ZyWall 5 Series User Manual page 810

Internet security appliance
Hide thumbs Also See for ZyWall 5 Series:
Table of Contents

Advertisement

ZyWALL 5/35/70 Series User's Guide
Table 288 Firewall Commands (continued)
FUNCTION
Rules
810
COMMAND
Config edit firewall set <set
#> tcp-idle-timeout <seconds>
Config edit firewall set <set
#> log <yes | no>
Config edit firewall set <set
#> rule <rule #> permit
<forward | block>
Config edit firewall set <set
#> rule <rule #> active <yes |
no>
Config edit firewall set <set
#> rule <rule #> protocol
<integer protocol value >
Config edit firewall set <set
#> rule <rule #> log <none |
match | not-match | both>
Config edit firewall set <set
#> rule <rule #> alert <yes |
no>
config edit firewall set <set
#> rule <rule #> srcaddr-
single <ip address>
config edit firewall set <set
#> rule <rule #> srcaddr-
subnet <ip address> <subnet
mask>
config edit firewall set <set
#> rule <rule #> srcaddr-range
<start ip address> <end ip
address>
config edit firewall set <set
#> rule <rule #> destaddr-
single <ip address>
DESCRIPTION
This command sets how long ZyWALL lets an
inactive TCP connection remain open before
considering it closed.
This command sets whether or not the
ZyWALL creates logs for packets that match
the firewall's default rule set.
This command sets whether packets that
match this rule are dropped or allowed
through.
This command sets whether a rule is enabled
or not.
This command sets the protocol specification
number made in this rule for ICMP.
This command sets the ZyWALL to log traffic
that matches the rule, doesn't match, both or
neither.
This command sets whether or not the
ZyWALL sends an alert e-mail when a DOS
attack or a violation of a particular rule occurs.
This command sets the rule to have the
ZyWALL check for traffic with this individual
source address.
This command sets a rule to have the
ZyWALL check for traffic from a particular
subnet (defined by IP address and subnet
mask).
This command sets a rule to have the
ZyWALL check for traffic from this range of
addresses.
This command sets the rule to have the
ZyWALL check for traffic with this individual
destination address.
Appendix L Firewall Commands

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall 70 seriesZywall 35 series

Table of Contents