ZyXEL Communications ZyWALL USG 300 User Manual page 460

Unified security gateway
Hide thumbs Also See for ZyWALL USG 300:
Table of Contents

Advertisement

Chapter 24 Firewall
Now you configure a LAN to WAN firewall rule that allows IRC traffic from the IP
address of the CEO's computer (192.168.1.7 for example) to go to any destination
address. You do not need to specify a schedule since you want the firewall rule to
always be in effect. The following figure shows the results of your two custom
rules.
Figure 341 Limited LAN to WAN IRC Traffic Example
Your firewall would have the following configuration.
Table 120 Limited LAN1 to WAN IRC Traffic Example 1
#
1
2
3
• The first row allows the LAN computer at IP address 192.168.1.7 to access the
IRC service on the WAN.
• The second row blocks LAN access to the IRC service on the WAN.
• The third row is the firewall's default policy of allowing all traffic from the LAN to
go to the WAN.
Alternatively, you configure a LAN to WAN rule with the CEO's user name (say
CEO) to allow IRC traffic from any source IP address to go to any destination
address.
Your firewall would have the following configuration.
Table 121 Limited LAN1 to WAN IRC Traffic Example 2
#
1
2
3
460
USER
SOURCE
DESTINATION
Any
192.168.1.7
Any
Any
Any
Any
Any
Any
Any
USER
SOURCE
DESTINATION
CEO
Any
Any
Any
Any
Any
Any
Any
Any
SCHEDULE SERVICE
Any
IRC
Any
IRC
Any
Any
SCHEDULE SERVICE
Any
IRC
Any
IRC
Any
Any
ZyWALL USG 300 User's Guide
ACTION
Allow
Deny
Allow
ACTION
Allow
Deny
Allow

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Usg 100 seriesUsg 200 series

Table of Contents