_____________________________________________________________________
724-746-5500 | blackbox.com
Page 102
Protocol: TCP
Direction: Egress
Action: Block
The firewall rules are processed in a set order-‐ from top to bottom. So rule placement is important. For
example with the following rules, all traffic coming in over the
Network Interface
is blocked except when
it comes from two nominated IP addresses (
SysAdmin
and
Tony
):
To allow all incoming traffic on all
interfaces from the SysAdmin:
To allow all incoming
traffic from Tony:
To block all incoming traffic
from the Network
Interface:
Interface
Any
Any
Network Interface
Port Range
Any
Any
Any
Source IP
IP address of SysAdmin
IP address of Tony
Any
Destination IP
Any
Any
Any
Protocol
TCP
TCP
TCP
Direction
Ingress
Ingress
Ingress
Action
Accept
Accept
Block
However if the
Rule Order
above was to be changed so the “
Block Everyone Else
” rule was second on
the list then the traffic coming in over the
Network Interface
from
Tony
would be blocked.