User's Manual

Table Of Contents
Security Mode Configuration Commands
119
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
the output of the show security firewall ipv6 setup command), you enter the security-config
[firewall-ipv6] mode.You can then edit one keyword and associated parameter or associated
keyword at a time in the order that you prefer. However, note that the setting of the action
keyword determines which other keywords and parameters you can apply to a rule.
Step 1 Format security firewall ipv6 edit <row id>
Mode security
Step 2 Format from_zone {LAN | WAN | DMZ}
to_zone {LAN | WAN | DMZ}
service_name {default_services <default service name> |
custom_services <custom service name>}
action {ALWAYS_BLOCK | ALWAYS_ALLOW |
BLOCK_BY_SCHEDULE_ELSE_ALLOW {schedule {Schedule1 |
Schedule2 | Schedule3}} | ALLOW_BY_SCHEDULE_ELSE_BLOCK
{schedule {Schedule1 | Schedule2 | Schedule3}}}
source_address_type {ANY | SINGLE_ADDRESS {source_start_address
<ipv6-address>} | ADDRESS_RANGE {source_start_address
<ipv6-address>} {source_end_address <ipv6-address>}}
destination_address_type {ANY | SINGLE_ADDRESS
{destination_start_address <ipv6-address>} | ADDRESS_RANGE
{destination_start_address <ipv6-address>}
{destination_end_address <ipv6-address>}}
qos_priority {Norm
al-Service | Minimize-Cost |
Maximize-Reliability | Maximize-Throughput | Minimize-Delay}
log {NEVER | ALWAYS}
Mode security-config [firewall-ipv6]
Keyword (might consist of two
separate words)
Associated Keyword to Select or
Parameter to Type
Description
Direction of service, service name, action, and schedule
from_zone LAN, WAN, or DMZ Select the outbound direction:
LAN. From the LAN.
WAN. From the WAN.
DMZ. From the DMZ.
to_zone LAN, WAN, or DMZ Select the inbound direction:
LAN. To the LAN.
WAN. To the WAN.
DMZ. To the DMZ.