ZyXEL Communications P-870HW-I User Manual

Page of 438
P-870HW-I1 User’s Guide
156
Chapter 11 Firewalls
Figure 86   Security > Firewall > Rules
The following table describes the labels in this screen.
Table 65   Security > Firewall > Rules
LABEL
DESCRIPTION
Firewall Rules 
Storage Space 
in Use
This read-only bar shows how much of the ZyXEL Device's memory for recording 
firewall rules it is currently using. When you are using 80% or less of the storage 
space, the bar is green. When the amount of space used is over 80%, the bar is red.
Packet Direction Use the drop-down list box to select a direction of travel of packets for which you 
want to configure firewall rules.
Create a new 
rule after rule 
number 
Select an index number and click Add to add a new firewall rule after the selected 
index number. For example, if you select “6”, your new rule becomes number 7 and 
the previous rule 7 (if there is one) becomes rule 8.
The following fields summarize the rules you have created that apply to traffic 
traveling in the selected Packet Direction. These rules take priority over the general 
firewall action settings in the Security > Firewall > General screen.
#
This is your firewall rule number. The ordering of your rules is important as rules are 
applied in order.
Active
This field displays whether a firewall is turned on or not. Select this to enable the rule. 
Clear this to disable the rule.
Source IP
This drop-down list box displays the source addresses or ranges of addresses to 
which this firewall rule applies. Please note that a blank source or destination 
address is equivalent to Any.
Destination IP
This drop-down list box displays the destination addresses or ranges of addresses to 
which this firewall rule applies. Please note that a blank source or destination 
address is equivalent to Any.
Service 
This drop-down list box displays the services to which this firewall rule applies.
Action
This field displays whether the firewall silently discards packets (Drop), discards 
packets and sends a TCP reset packet or an ICMP destination-unreachable 
message to the sender (Reject) or allows the passage of packets (Permit).
Schedule
This field tells you whether a schedule is specified (Yes) or not (No).
Log
This field shows you whether a log is created when packets match this rule (Yes) or 
not (No).