Quick Start Guide WALL IE
19
It is also possible to configure the access of several participants with one another. An IP range can be defined with a dash: “10.10.1.10-10.10.1.20“.
A list of IP addresses is indicated with commas: “10.10.1.10,10.10.1.15,10.10.1.20”.
Action
defines whether this rule allows communication (“Accept”), rejects with error message (“Reject”), or simply rejects (“Drop”). The appropriate method here should
always be chosen in interaction with the “Default Action”. If the Default Action is, for example, “Reject” or “Drop”, the filter rules should all be set to “Accept” (Whitelisting).
If the Default Action is “Accept”, a block can be defined in the filter rules with “Reject” or “Drop” for certain devices (Blacklisting).
With the “ICMP Traffic” option, you can generally allow (“Accept”) the directing
of ICMP packets, for example, a “Ping”, (“Accept”) or prohibit them dependent
upon the packet filters (“Default Action”). If, for example, the packet filters “Default
Action” are set to “Reject” or “Drop”, and ICMP Traffic to “Default Action”, then no
ICMP frames of any kind are allowed through.