_______________________________________________________________________________________________________
_______________________________________________________________________________________________________
© Virtual Access 2018
GW6600 Series User manual
Issue: 1.7
Page 328 of 519
31.2.1.1
Firewall general settings
The General Settings page, or defaults section declares global firewall settings that do
not belong to any specific zones. These default rules take effect last and more specific
rules take effect first.
Figure 165: The firewall zone general settings page
Web Field/UCI/Package Option Description
Web: Enable SYN-flood protection
UCI: firewall.defaults.syn_flood
Opt: syn_flood
Enables SYN flood protection.
0
Disabled.
1
Enabled.
Web: Drop invalid packets
UCI: firewall.defaults.drop_invalid
Opt: drop_invalid
Drops packets not matching any active connection.
0
Disabled.
1
Enabled.
Web: Input
UCI: firewall.defaults.input
Opt: input
Default policy for the Input chain.
Accept
Accepted packets pass through the firewall.
Reject
Rejected packets are blocked by the firewall and
ICMP message is returned to the source host.
Drop
Dropped packets are blocked by the firewall.
Web: Output
UCI: firewall.defaults.output
Opt: output
Default policy for the Output chain.
Accept
Accepted packets pass through the firewall.
Reject
Rejected packets are blocked by the firewall and
ICMP message is returned to the source host.
Drop
Dropped packets are blocked by the firewall.
Web: Forward
UCI: firewall.defaults.forward
Opt: forward
Default policy for the Forward chain.
Accept
Accepted packets pass through the firewall.
Reject
Rejected packets are blocked by the firewall and
ICMP message is returned to the source host.
Drop
Dropped packets are blocked by the firewall.
Table 118: Information table for general zone general settings page