- 78 -
Deny Policy Sample
Case 1: Deny specific Source IP Address – Host
Purpose:
Verify positive and negative matches to a specific host IP address with a
32 bit mask
, no matter the rule defined as
permit or deny. Check for Class A,B, and C address.
1. To set a
Host
as the target at this case.
2. Once the deny policy be applied, all IP packets from the target Host IP Address will be
dropped
.
3. No matter IP packets form the target be transmitted to
Internet or Intranet
within the same IP segment, they will
be
dropped
.
Case Design:
Action DENY
Match IP
Source IP Address
Host IP
192.168.1.1 / 255.255.255.255
Destination IP Address
ANY
Device Connection and Configuration:
Stream
Target
ID
Source Address
Destination Address
Protocol
Host
1 192.168.1.1
Any
Any
ACL Policy Configuration:
Summary of Contents for FGSW-2402VS
Page 4: ... 4 Case 5 Deny Specify Protocol HTTP WWW 86 Case 6 Deny Specify Protocol SMTP 88 ...
Page 24: ... 24 Figure 4 16 Port based VLAN Setting Web Page screen ...
Page 42: ... 42 Figure 4 45 QoS Configuration Web Page screen ...
Page 65: ... 65 Figure 4 82 Factory Default Web Page screen Figure 4 83 Factory Default Web Page screen ...
Page 67: ... 67 Figure 4 86 Reboot Web Page screen Figure 4 87 Reboot Web Page screen ...
Page 70: ... 70 Figure 4 90 Logout Web Page screen Figure 4 91 Logout Web Page screen ...
Page 71: ... 71 Figure 4 92 Logout Web Page screen ...
Page 79: ... 79 ACL Policy Entry ...
Page 81: ... 81 ACL Policy Entry ...
Page 83: ... 83 ACL Policy Configuration ACL Policy Entry ...
Page 85: ... 85 ...
Page 87: ... 87 ACL Policy Entry ...