Firewall configuration
Services
FortiGate-50A Installation and Configuration Guide
149
5
To remove addresses from the address group, select an address from the Members
list and select the left arrow to remove it from the group.
6
Select OK to add the address group.
Figure 8: Adding an internal address group
Services
Use services to determine the types of communication accepted or denied by the
firewall. You can add any of the predefined services to a policy. You can also create
custom services and add services to service groups.
This section describes:
•
Predefined services
•
Adding custom TCP and UDP services
•
Adding custom ICMP services
•
Adding custom IP services
•
Grouping services
Predefined services
The FortiGate predefined firewall services are listed in
Table 18
. You can add these
services to any policy.
Table 18: FortiGate predefined services
Service name
Description
Protocol
Port
ANY
Match connections on any port. A connection
that uses any of the predefined services is
allowed through the firewall.
all
all
Содержание FortiGate 50A
Страница 12: ...Contents 12 Fortinet Inc ...
Страница 32: ...32 Fortinet Inc Next steps Getting started ...
Страница 40: ...40 Fortinet Inc Completing the configuration NAT Route mode installation ...
Страница 72: ...72 Fortinet Inc Session list System status ...
Страница 112: ...112 Fortinet Inc Configuring the modem interface Network configuration ...
Страница 120: ...120 Fortinet Inc Adding RIP filters RIP configuration ...
Страница 170: ...170 Fortinet Inc Content profiles Firewall configuration ...
Страница 224: ...224 Fortinet Inc Logging attacks Network Intrusion Detection System NIDS ...
Страница 230: ...230 Fortinet Inc Viewing the virus list Antivirus protection ...
Страница 244: ...244 Fortinet Inc Exempt URL list Web filtering ...
Страница 262: ...262 Fortinet Inc Glossary ...
Страница 272: ...272 Fortinet Inc Index ...