P O L I C Y C O N F I G U R A T I O N
Configuring Policies
9-8
Security Appliance User Guide
Version 3R2
9
Set policy id 2 from trust to untrust any any ftp deny
G U I E X A M P L E : R E O R D E R I N G P O L I C I E S
1
Policy > Configuration > Edit (for ID1)
2
Enter the following, then click
Apply
:
Location
Action: Permit
Source Address: Any
Destination Address: Any
Service: Any
3
Policy > Configuration > Edit (for ID2)
4
Enter the following, then click
Apply
:
Location
Action: Deny
Source Address: Any
Destination Address: Any
Service: FTP
By default, the freeGuard Blaze 2100 software assigns a newly created
policy a policy ID and adds it to the bottom of the policy list. To restrict
FTP traffic from trust to untrust Policy 2 reordered in front of Policy 1.
Use the
set policy
command with the
move
option to re-order policies
in the policy database:
set policy move {id_num} { before | after } {target_id}
The
{id_num}
number specifies the policy number that is moved; the
{target_id}
is the policy number that the policy is moved before or after.
DISABLING POLICIES
Use the
set policy
command with the
disable
option to disable a policy
rather that delete it from the policy database:
set policy id {id_num} disable
Содержание freeGuard Blaze 2100
Страница 1: ...freeGuard Blaze 2100 User Guide Version 3R2...
Страница 14: ...I NT R O DU C T I O N About Document Conventions 1 4 Security Appliance User Guide Version 3R2 1...
Страница 24: ...G E T T IN G S T A R T E D Installing the freeGuard Blaze 2100 2 10 Security Appliance User Guide Version 3R2 2...
Страница 82: ...SY ST EM MA N AGEM E N T Using Traceroute 4 22 Security Appliance User Guide Version 3R2 4...
Страница 192: ...P OL IC Y CO NF I G URA T IO N About Schedules 9 28 Security Appliance User Guide Version 3R2 9...
Страница 216: ...P R E DEF I N E D SER V IC ES A 4 Security Appliance User Guide Version 3R2 A...