3.32. IPRuleSet
Description
An IP Rule Set is a self-contained set of IP Rules. Default action is Drop.
Properties
Name
A name to uniquely identify this IPRuleSet. (Identifier)
Comments
Text describing the current object. (Optional)
3.32.1. IPRule
Description
An IP rule specifies what action to perform on network traffic that matches the specified filter criter-
ia.
Properties
Name
Specifies a symbolic name for the rule. (Optional)
Action
Reject, Drop, FwdFast, Allow, NAT, SAT ,SLB_SAT,
GOTO or RETURN.
SourceInterface
Specifies the name of the receiving interface to be compared
to the received packet.
SourceNetwork
Specifies the sender span of IP addresses to be compared to
the received packet.
DestinationInterface
Specifies the the destination interface to be compared to the
received packet.
DestinationNetwork
Specifies the span of IP addresses to be compared to the des-
tination IP of the received packet.
Service
Specifies a service that will be used as a filter parameter when
matching traffic with this rule.
Schedule
By adding a schedule to a rule, the security gateway will only
allow that rule to trigger at those designated times. (Optional)
NATAction
Specify sender address or Use interface address. (Default:
UseInterfaceAddress)
NATSenderAddress
Specifies which sender address will be used.
NATPool
Specifies which sender address will be used.
SATTranslate
Specifies whether to translate source IP or destination IP.
(Default: DestinationIP)
SATTranslateToIP
Translate to this IP address.
3.32. IPRuleSet
Chapter 3. Configuration Reference
146