589
Field descriptions
Policy field descriptions
Policy field descriptions
The Policy section lets you define your corporate security stance. Secure your network by defining how
traffic passes through the network, securing connections with VPN, and protecting clients with
antivirus, antispam, and content filtering.
Firewall
The Firewall folder lets you create the rules, filters, and time settings that control traffic at the
security gateway.
Rule Properties—General tab
Rules control access to and from your private networks through your Symantec security gateways.
Basic rules include source and destination entities and the interface or secure tunnel to use for access
into and out of the designated security gateway. You specify these values on the General tab.
Associated tasks
The tasks that you can perform with this tab include:
■
■
“Enforcing time-based access restrictions”
Table D-24
Rule Properties—General tab
Field
Description
Enable
Indicates whether this option is enabled.
For traffic to be controlled using this rule, it must be enabled.
This option is checked by default.
Rule name
A unique name for this rule.
The maximum length is 256 characters.
Allowed characters are a-z, A-Z, numerals, periods (.), dashes (-), and underscores (_).
Do not include spaces in the name. The characters @,!,#,$,%,
^
,&,*,<,> and other reserved
characters are also invalid.
Number
This read-only field is assigned automatically when you create the rule.
When the security gateway must choose between otherwise identical rules, the rule with
the lowest number is used.
Caption
A short description of the rule.
This field is optional.
The maximum lengths is 128 characters.
For longer descriptions, use the Description tab.
Action
The action performed by the rule.
Options are:
■
Allow
Traffic defined in the rule is allowed through the security gateway.
This is the default option.
■
Deny
Traffic defined in the rule is stopped at the security gateway.
If you create a deny rule that conflicts with current connections, those connections
are unaffected. To stop existing connections that violate the new rule, you must use
the Kill Connection button on the Active Connections tab in the Monitoring window.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...