vShield Administration Guide
72
VMware, Inc.
To create a firewall rule at the cluster level
1
In the vSphere Client, go to
Inventory > Hosts and Clusters
.
2
Select a cluster resource from the resource tree.
3
Click the
vShield App
tab.
4
Click
App Firewall
.
By default, the
L4 Rules
option is selected.
To create L2/L3 rules, see
“Create a Layer 2/Layer 3 App Firewall Rule”
on page 73.
5
Click
Add
.
A new row appears in the Cluster Level Rules section of the table.
6
Double-click each cell in the new row to select the appropriate information.
You can type IP addresses in the
Source
and
Destination
fields, and port numbers in the
Source Port
and
Destination Port
fields.
7
(Optional) Select the new row and click
Up
to move the row up in priority.
8
(Optional) Select the
Log
check box to log all sessions matching this rule.
9
Click
Commit
to save the rule.
To create a firewall rule at the port group level
1
In the vSphere Client, go to
Inventory > Networking
.
2
Select a port group from the resource tree.
3
Click the
vShield App
tab.
4
Click
App Firewall
.
5
Click
Add
.
A new row is added at the bottom of the Secure Port Group Rules section.
6
Double-click each cell in the new row to select the appropriate information.
You can type IP addresses in the
Source
and
Destination
fields, and port numbers in the
Source Port
and
Destination Port
fields.
7
(Optional) Select the new row and click
Up
to move the row up in priority.
8
(Optional) Select the
Log
check box to log all sessions matching this rule.
9
Click
Commit
to save the rule.
N
OTE
Layer 4 firewall rules can also be created from the Flow Monitoring report. See
“Add an App Firewall
Rule from the Flow Monitoring Report”
on page 65.
N
OTE
Layer 4 firewall rules can also be created from the Flow Monitoring report. See
“Add an App Firewall
Rule from the Flow Monitoring Report”
on page 65.
Содержание VSHIELD APP 1.0.0 UPDATE 1 - API
Страница 9: ...VMware Inc 9 vShield Manager and vShield Zones...
Страница 10: ...vShield Administration Guide 10 VMware Inc...
Страница 14: ...vShield Administration Guide 14 VMware Inc...
Страница 18: ...vShield Administration Guide 18 VMware Inc...
Страница 24: ...vShield Administration Guide 24 VMware Inc...
Страница 34: ...vShield Administration Guide 34 VMware Inc...
Страница 42: ...vShield Administration Guide 42 VMware Inc...
Страница 46: ...vShield Administration Guide 46 VMware Inc...
Страница 47: ...VMware Inc 47 vShield Edge and Port Group Isolation...
Страница 48: ...vShield Administration Guide 48 VMware Inc...
Страница 57: ...VMware Inc 57 vShield App and vShield Endpoint...
Страница 58: ...vShield Administration Guide 58 VMware Inc...
Страница 62: ...vShield Administration Guide 62 VMware Inc...
Страница 68: ...vShield Administration Guide 68 VMware Inc...
Страница 78: ...vShield Administration Guide 78 VMware Inc...
Страница 85: ...VMware Inc 85 Appendixes...
Страница 86: ...vShield Administration Guide 86 VMware Inc...
Страница 130: ...vShield Administration Guide 130 VMware Inc...
Страница 144: ...vShield Administration Guide 144 VMware Inc...