User`s manual

To add a policy:
Go to Firewall > Policy .
Click the tab corresponding to the type of policy to add.
Before adding Incoming policies in NAT mode, you must configure Virtual IP Mapping. For more information about
incoming policies, see Virtual IPs
.
Click New to add a policy.
You can also click Insert Policy before
on a policy in the list to add the new policy above that one.
Configure the policy.
Source
Select the source address for the policy. You can only select a source address that corresponds to the
type of policy that you are adding. For example, if you are adding an Int to Ext policy, you can only select
an internal source address. To add addresses to this list, see Addresses
.
Destination
Select the destination address for the policy. You can only select a destination address that corresponds
to the type of policy that you are adding. To add addresses to this list, see Addresses
.
Schedule
Select a schedule to control when to accept connections. To add schedules to this list, see Schedules
.
Service
Select a service to match the type of network service controlled by the policy. For example, if the policy
controls FTP connections, select FTP. By default you can select from a wide range of network services.
For more information about firewall services, including how to add custom services, see Services
.
Action
Select how the firewall should respond to a connection attempt matched by the policy. You can select
ACCEPT to accept the connection or DENY to deny the connection. For Int to Ext policies you can also
select AUTH to require users to authenticate with the firewall before the firewall accepts the connection.
See Users and authentication
.
Log Traffic
Optionally select Log Traffic to add messages to the traffic log whenever the policy processes a
connection. See Logging and reporting
.
Traffic
Shaping
Optionally select Traffic Shaping to control the bandwidth available to and set the priority of the traffic
processed by the policy. See Traffic shaping
Click OK to save the policy.
Sample Int to Ext (Outgoing) policy:
DFL-500 User’s Manual
25