User's Manual Part 2

Using Rules
Chapter 9: Setting Your Security Policy 213
Table 33: Firewall Rule Types
Rule Description
Allow and
Forward
This rule type enables you to do the following:
Permit incoming access from the Internet to a specific service in
your internal network.
Forward all such connections to a specific computer in your
network.
Redirect the specified connections to a specific port. This option is
called Port Address Translation (PAT).
Assign traffic to a QoS class.
If Traffic Shaper is enabled for incoming traffic, then Traffic Shaper
will handle relevant connections as specified in the bandwidth policy
for the selected QoS class. For example, if Traffic Shaper is enabled
for incoming traffic, and you create an Allow and Forward rule
associating all incoming Web traffic with the Urgent QoS class, then
Traffic Shaper will handle incoming Web traffic as specified in the
bandwidth policy for the Urgent class.
For information on Traffic Shaper and QoS classes, see Using
Traffic Shaper on page 153.
Creating an Allow and Forward rule is equivalent to defining a server in the
Servers page.
Note: You must use this type of rule to allow incoming connections if your
network uses Hide NAT.
Note: You cannot specify two Allow and Forward rules that forward the same
service to two different destinations.