Chapter 25 Firewall
UAG5100 User’s Guide
252
25.3 The Session Control Screen
Click Configuration > Firewall > Session Control to display the Firewall Session Control
screen. Use this screen to limit the number of concurrent NAT/firewall sessions a client can use. You
can apply a default limit for all users and individual limits for specific users, addresses, or both. The
individual limit takes priority if you apply both.
Figure 173
Configuration > Firewall > Session Control
Destination
Select an IPv4 address or address group to apply an IPv4 rule to traffic going to it. Select
any to apply an IPv4 rule to all traffic going to IPv4 addresses.
Service
Select a service or service group from the drop-down list box.
Access
Use the drop-down list box to select what the firewall is to do with packets that match this
rule.
Select deny to silently discard the packets without sending a TCP reset packet or an ICMP
destination-unreachable message to the sender.
Select reject to deny the packets and send a TCP reset packet to the sender. Any UDP
packets are dropped without sending a response packet.
Select allow to permit the passage of the packets.
Log
Select whether to have the UAG generate a log (log), log and alert (log alert) or not (no)
when the rule is matched. See
for more on logs.
OK
Click OK to save your customized settings and exit this screen.
Cancel
Click Cancel to exit this screen without saving.
Table 110
Configuration > Firewall > Add/Edit (continued)
LABEL
DESCRIPTION