
Firewall Configuration
Configuring Firewall Rules to Control Inbound and Outbound Traffic
Cisco SA 500 Series Security Appliances Administration Guide
126
5
Configuring a Firewall Rule for Outbound Traffic
This procedure explains how to configure a firewall rule for the following traffic
flows:
•
From the LAN to the WAN
•
From the LAN to the DMZ
•
From the DMZ to the WAN
For examples, see
Firewall Rule Configuration Examples, page 133
.
NOTE
In addition to firewall rules, there are two other methods for controlling access to
the Internet:
•
You can allow access to approved websites. For more information, see
Configuring Approved URLs to Allow Access to Websites, page 144
.
•
You can block URLs that contain specified keywords. For more information,
see
Configuring Blocked URLs to Prevent Access to Websites,
page 145
.
STEP 1
Click
Firewall
on the menu bar, and then click
Firewall > IPv4 Rules
or
IPv6 Rules
in the navigation tree.
—OR—For IPv4 rules, you can use the Getting Started (Advanced) page. In the
Firewall and NAT Rules
section, click
Configure Firewall and NAT Rules
.
STEP 2
The Firewall Rules page appears. Any existing rules appear in the List of Available
Firewall Rules table.
For IPv4 rules, you can view the list of available rules by zone. Choose the source
and destination from the
From Zone
and
To Zone
drop-down menus and click
Display Rules
.
STEP 3
To add a rule, click
Add
.
NOTE
Other options:
Click the
Edit
button to edit an entry. To delete an entry, check
the box and then click
Delete
. To change the status of a rule, check the box
and then click
Enable
or
Disable
. To select all entries, check the box in the
first column of the table heading.