Chapter 7
Traffic Policy
74
Firewall Traffic
This rule enables access to certain services from the
WinRoute
host. It is similar to the
NAT
rule except from the fact that this rule does not perform IP translation (this host
connects to the Internet directly).
Default rule
This rule drops all communication that is not allowed by other rules. The default rule is
always listed at the end of the rule list and it cannot be removed.
The default rule allows the administrator to select what action will be taken with unde-
sirable traffic attempts (
Deny
or
Drop
) and to decide whether packets or/and connections
will be logged.
Note:
To see detailed descriptions of traffic rules refer to chapter
7.2 How traffic rules work
The traffic policy consists of rules ordered by their priority. When the rules are applied, they
are processed from the top downwards and the first rule is applied that meets
or
parameters — i.e. order of the rules in the list is key. The order of the rules can be
changed with the two arrow buttons on the right side of the window.
An explicit rule denying all traffic is shown at the end of the list. This rule cannot be edited or
removed. If there is no rule to allow particular network traffic, then the “catch all” deny rule
will discard the packet.
Note:
1.
Unless any other traffic rules are defined (by hand or using the wizard), all traffic is blocked
by a special rule which is set as default.
2.
To control user connections to WWW or FTP servers and filter contents, use the special
tools available in
WinRoute
for these purposes (see chapter
) rather than traffic rules.
7.3 Definition of Custom Traffic Rules
The traffic rules are displayed in the form of a table, where each rule is represented by a row
and rule properties (name, conditions, actions — for details see below) are described in the
columns. Left-click in a selected field of the table (or right-click a rule and choose the
Edit...
option in the context menu) to open a dialog where the selected item can be edited.
To define new rules press the
Add
button. Move the new rule within the list using the arrow
buttons.
Summary of Contents for Firewall6
Page 1: ...Kerio WinRoute Firewall 6 Administrator s Guide Kerio Technologies...
Page 129: ...8 5 HTTP cache 129...
Page 404: ...404...