120
Figure 39 Network diagram
Configuration procedure
1.
From the navigation tree, select
Security
>
Packet Filter
>
Packet Filter
.
2.
Create a packet filter policy:
a.
Select VLAN-interface 10.
b.
Select the outbound application direction.
c.
Select the IPv4 ACL type for packet filter.
3.
Create an advanced IPv4 ACL and configure the following rules in the order they are described:
Action
Protocol
type
IP/wildcard mask
Time range
Permit 256
Source: 192.168.1.0/0.0.0.255
Destination: 192.168.0.100/0
N/A
Permit 256
Source: 192.168.2.0/0.0.0.255
Destination: 192.168.0.100/0
Create a time range named
work
:
•
Specify the start time as
08:00
.
•
Specify the end time as
18:00
.
•
Select Monday through
Friday.
Deny 256
Destination: 192.168.0.100/0
N/A
4.
Enable rule match counting for the ACL.
Verifying the configuration
1.
Ping the database server from different departments to verify the following items:
{
You can access the server from the President's office at any time.
{
You can access the server from the Financial department during the working hours.
{
You cannot access the server from the Marketing department at any time.
2.
Access the ACL rule Web interface, verify that the ACL rules are active. (Details not shown.)