Fetch Next
Filter Set
Yes
Next Filter Set
Available?
No
Drop Packet
Filter Configuration
Filter Set
Fetch Next
Filter Rule
Yes
Next filter
No
Rule
Available?
Check
Next
Rule
Figure 15-2 Filter Rule Process
ZyWALL 50 Internet Security Gateway
Start
Packet into
filter
Fetch First
Filter Set
Fetch First
Filter Rule
No
Active?
Yes
Execute
Filter Rule
Forward
Drop
Accept Packet
15-3