User's Manual

Table Of Contents
Security Mode Configuration Commands
97
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Command example: See the command example for the security firewall ipv4 add_rule dmz_wan
outbound command.
Related show command: show security firewall ipv4 setup dmz_wan
security firewall ipv4 add_rule dmz_wan inbound
This command configures a new IPv4 DMZ WAN inbound firewall rule. After you have issued
the security firewall ipv4 add_rule dmz_wan inbound command, you enter the
security-config [firewall-ipv4-dmz-wan-inbound] mode, and then you can configure one
keyword and associated parameter or associated keyword at a time in the order that you
wan_user_start_ip ipaddress There are two options:
• The IP address if the wan_users
keyword is set to
SINGLE_ADDRESS.
• The start IP address if the
wan_users keyword is set to
ADDRESS_RANGE.
wan_user_end_ip ipaddress The end IP address if the
wan_users keyword is set to
ADDRESS_RANGE.
QoS profile, logging, and NAT IP address
qos_priority Normal-Service, Minimize-Cost,
Maximize-Reliability,
Maximize-Throughput, or
Minimize-Delay
The type of QoS that applies to the
rule.
log NEVER or ALWAYS Enables or disables logging.
nat_ip type WAN_INTERFACE_ADDRESS or
SINGLE_ADDRESS
Specifies the type of NAT IP
address:
WAN_INTERFACE_ADDRESS.
The IP address of the WAN
(broadband) interface.
SINGLE_ADDRESS. Another IP
address, which you need to
configure using the nat_ip
address keywords.
nat_ip address ipaddress The NAT IP address, if the nat_ip
type keywords are set to
SINGLE_ADDRESS.
Keyword (might consist of two
separate words)
Associated Keyword to Select or
Parameter to Type
Description