Firewall Rule Configuration Examples - Cisco WS-CE500 Administration Manual

Sa500 series small business security appliances
Table of Contents

Advertisement

Firewall Configuration

Firewall Rule Configuration Examples

STEP 4
STEP 5
STEP 6
Firewall Rule Configuration Examples
Cisco SA500 Series Security Appliances Administration Guide
The Move Firewall Rules window opens.
In the List of Available Firewall Rules table, check the box next the rule you want to
reorder and select one of the following:
MoveUp: Moves the rule up one position.
MoveDown: Moves the rule down one position.
Move To: Moves the rule to a specified location. Enter the target index
number to move the selected rule to.
For example: A target index of 2 moves the rule to position 2 and moves the
other rules down to position 3 in the list.
When finished, you are returned to the IPv4 Firewall Rules page.
Verify that the rules were reordered by choosing the appropriate source and
destination the Zone drop-down menus and click Display Rules.
Allowing Inbound Traffic to a Web Server Using the WAN IP Address
Situation: You host a public web server on your DMZ. You want to allow inbound
HTTP requests from any outside IP address. The inbound traffic is addressed to
your WAN IP address but is directed to a web server.
Solution: Create an inbound rule as follows:
Parameter
From Zone
To Zone
Service
Action
Source Hosts
Internal IP Address
External IP Address
Value
Insecure (WAN1)
DMZ
HTTP
ALLOW always
Any
192. 1 68.5.2
Dedicated WAN
4
114

Advertisement

Table of Contents
loading

Table of Contents