Control Traffic From The Trusted To Optional Network - Watchguard Firebox X15 User Manual

Firebox x edge e-series version 10 all firebox x edge e-series standard and wireless models
Hide thumbs Also See for Firebox X15:
Table of Contents

Advertisement

Firewall Policies
About policies for the optional network
By default, the Firebox X Edge e-Series allows all traffic that starts in the trusted network and tries to go to the
optional network, and denies all traffic that starts in the optional network and tries to go to the trusted
network.
Here are some examples of how you can use the optional network:
You can use the optional network for servers that accept incoming connections from the external
network. This helps to protect the trusted network, because no traffic is allowed to the trusted network
from the optional network when the Firebox X Edge is in default configuration. When computers are
accessible from the external network, they are more vulnerable to attack. If your public web or FTP
server on the optional network is hacked or compromised, the attacker cannot get access to your
trusted network.
You can use the optional network to secure a wireless network. Wireless networks are usually less
secure than wired networks. If you have a wireless access point (WAP) or a Firebox X Edge Wireless, you
can increase the security of your trusted network by keeping the WAP on the optional network.
You can use the optional network to have a different network IP address range that is allowed to
communicate with the trusted network. For more information, see
trusted and optional

Control traffic from the trusted to optional network

Do these steps to control traffic that goes from the trusted network to the optional network:
1. To connect to the System Status page, type
of the Firebox X Edge trusted interface.
The default URL is: https://192.168.111.1
2. From the navigation bar, select Firewall > Optional.
The Filter Outgoing Traffic to Optional Network page appears.
3. To allow all traffic from the trusted network, find the Outgoing policy and select Allow from the Filter
drop-down list.
4. To deny all traffic from the trusted network, find the Outgoing policy and select Deny from the Filter
drop-down list.
5. To deny some traffic, but allow all other traffic from the trusted network to the optional network, set
the Outgoing policy to Deny from the Filter drop-down list. Then, for each policy that is allowed, select
Allow from the Filter drop-down list. If you want to deny the traffic and create a log entry for each time
the traffic is denied, select No Rule.
6. Click Submit.
124
networks.
https://
Disable traffic filters between the
in the browser address bar, and the IP address
Firebox X Edge e-Series

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents