User's Manual

Configuring Security Settings
6.9 Advanced Filtering
6
114
To configure advanced filtering rules, click Add next to the rule title. The Add
Advanced Filter screen appears.
To add an advanced filtering rule, define the following rule parameters:
6.9c Matching
To apply a firewall rule, a match must be made between IP addresses or ranges
and ports. Use the Source Address and “Destination Address drop-down lists
to define the coupling of source and destination traffic. Port matching will be
defined when selecting protocols. For example, if the FTP protocol is selected,
port 21 will be checked for matching traffic flow between the defined source
and destination IPs.
6.9d Operation
This is where the action the rule will take is defined. Select one of the following
radio buttons:
Drops - Deny access to packets that match the source and destination IP
addresses and vCP reset to the origination peer.
Accepts - Allow access to packets that match the source and destination IP
addresses and protocol ports defined in upper section of the screen. The data
transfer session will be handled using Stateful Packet Inspection (SPI).