Quick Reference Guide
ProSafe VPN Firewall 50 FVS338 Reference Manual
VPN Firewall and Network Management 6-3
v1.0, January 2010
– Single address. The rule applies to a single Internet IP address.
– Address range. The rule is applied to a range of Internet IP addresses.
• Services. You can specify the desired services or applications to be covered a rule. If the
desired service or application does not appear in the list, you must define it using the Services
screen (see “Services-Based Rules” on page 4-2 and “Adding Customized Services” on
page 4-20).
• Groups and Hosts. You can apply these rules selectively to groups of PCs to reduce the
outbound or inbound traffic. The Network Database is an automatically-maintained list of all
known PCs and network devices. PCs and devices become known by the following methods:
– DHCP Client Request. By default, the DHCP server in this VPN firewall is enabled, and
will accept and respond to DHCP client requests from PCs and other network devices.
These requests also generate an entry in the Network Database. Because of this, leaving
the DHCP Server feature (on the LAN Setup screen) enabled is strongly recommended.
– Scanning the Network. The local network is scanned using standard methods such as
ARP. This will detect active devices which are not DHCP clients. However, sometimes the
name of the PC or device cannot be accurately determined, and will be shown as
Unknown.
– Manual Entry. You can manually enter information about a device.
See “Managing Groups and Hosts” on page 3-6for the procedure on how to use this feature.
• Schedule. If you have set firewall rules on the LAN WAN Rules screen, you can configure
three different schedules (that is, schedule 1, schedule 2, and schedule 3) for when a rule is to
be applied. Once a schedule is configured, it affects all rules that use this schedule. You
specify the days of the week and time of day for each schedule. (See “Setting a Schedule to
Block or Allow Specific Traffic” on page 4-25 for the procedure on how to use this feature.)
Blocking Sites
If you want to reduce traffic by preventing access to certain sites on the Internet, you can use the
VPN firewall’s filtering feature. By default, this feature is disabled; all requested traffic from any
website is allowed.
• Keyword (and Domain Name) Blocking. You can specify up to 32 words that, should they
appear in the website name (URL) or in a newsgroup name, will cause that site or newsgroup
to be blocked by the VPN firewall.
You can apply the keywords to one or more groups. Requests from the PCs in the groups for
which keyword blocking has been enabled will be blocked. Blocking does not occur for the
PCs that are in the groups for which keyword blocking has not been enabled.