Advanced Networking Services Guide

Table Of Contents
2 Click the Firewall tab.
The table of configured rules for the edge gateway firewall appears.
n
Disable a rule by clicking , or enable a rule by clicking .
n
Edit a rule by clicking .
NOTE The default firewall rule for an edge gateway blocks all incoming traffic. You can change the
default action and logging settings. Default firewall settings apply to traffic that does not match
any of the user-defined firewall rules.
n
Delete a rule by clicking
.
n
Move a rule up or down in the Firewall table. See “Change the Order of a Gateway Firewall Rule,”
on page 34.
n
Hide generated rules or pre rules (rules added on the centralized Firewall tab) by clicking Hide
Generated rules or Hide Pre rules.
n
Search for rules by typing text in the Search field.
n
Display additional columns in the rule table by clicking and selecting the appropriate
columns.
Column Name Information Displayed
Rule Tag Unique system generated ID for each rule
Log Whether traffic for this rule is being logged
Stats
Clicking shows the traffic related to this rule (traffic packets and size)
Comments Comments for the rule
3 Click Publish Changes.
Change the Order of a Gateway Firewall Rule
You can move a custom rule up or down in the table. The default rule is always at the bottom of the table
and cannot be moved.
Rules are displayed (and enforced) in the following order:
1 User-defined pre rules have the highest priority and are enforced in top-to-bottom ordering with a per-
virtual NIC level precedence.
2 Auto-plumbed rules.
3 Local rules defined at an edge gateway level.
4 Default firewall rule for Trust Groups.
Procedure
1 Log in to vCloud Air and navigate to the vCloud Edge Gateway Services UI.
See “Log In and Navigate to Advanced Networking Services,” on page 9 for information.
2 In the Firewall tab, select the rule that you want to move.
3
Move a rule up or down in the Firewall table by clicking Move rule up (
) or Move rule down ( )
icon.
vCloud Air Advanced Networking Services Guide
34 VMware, Inc.