310
14.2.2-D
…
> SX-GATE
This tab addresses connections to SX-GATE. The destination is one of the applications
SX-GATE offers.
Input rules: Source
…
, destination SX-GATE
A new entry is created by filling out the input fields and clicking on "Add". Select an
existing entry and click "Copy" to use it as a template. You can edit entries by clicking
on the underlined items. With "Remove" you can discard the currently selected line.
The "Up" and "Down" buttons help you to group related entries.
Rules are evaluated in the given order. The first match applies.
Hence more specific rules have to be moved above more
general rules. So e.g. a rule for a certain individual IP address
must be moved above a rule which refers to the same protocol
but an arbitrary IP address.
The following inputs are available:
Active
Use this control to enable or disable a rule at any time. Select date and time to
configure a temporary firewall rule which is active until that point of time has been
reached.
Log
You can enable logging with this switch. For TCP connections only the initial
packet will be written to the log. For all other IP protocols every packet is logged.
You should enable logging only for diagnostic purposes or
for rules which are not used frequently. Otherwise your log
files may grow rapidly.
Protocol
Select one of the protocols from the list. Each protocol represents a set of IP
protocol and port definitions. You will find the details in menu "Definitions >
Protocols". This is also where you can extend the list with your own protocol
definitions.
Source (
…
)
If you leave these fields blank, the rule will apply to any source IP. To grant
access for a single client only, please enter its IP address. To give access for a
whole network, specify the network address and its corresponding netmask (e.g.
192.168.0.0/24). To configure a rule for multiple individual clients or networks,