ZyXEL Communications 5 Series User Manual

Page of 824
 Chapter 5 Tutorials
ZyWALL 5/35/70 Series User’s Guide
127
5.3.2  Configuring the Firewall Rules
Suppose you have several VPN tunnels but you only want to allow device B’s network to 
access the FTP server. You also only want FTP traffic to go to the FTP server, so you want to 
block all other traffic types (like chat, e-mail, web and so on). The following sections show 
how to configure firewall rules to enforce these restrictions.
5.3.2.1  Firewall Rule to Allow Access Example
Configure a firewall rule that allows FTP access from the VPN tunnel to the FTP server.
Click Security > Firewall > Rule Summary
Select VPN To LAN as the packet direction and click Refresh.
Click the insert icon at the top of the Modify column.
Figure 62   SECURITY > FIREWALL > Rule Summary
Configure the rule as follows and click Apply. The source addresses are the VPN rule’s 
remote network and the destination address is the LAN FTP server.