Configuring Firewall Settings
110
WatchGuard Firebox X Edge
Filtering incoming traffic for services
These steps restrict incoming traffic for a service to specified com-
puters behind the firewall. Refer to the subsequent section for infor-
mation on controlling outgoing traffic.
1
From the
Incoming Filter
drop-down list, select
Allow
or
Deny
.
2
If you set the Incoming Filter to
Allow
, type the IP address of
the service host. This is the computer that receives the traffic.
To allow incoming traffic from the external network without
restrictions, skip to step 7.
3
To limit incoming traffic from the external network to the
service host, use the drop-down list to select
Host IP Address
,
Network IP Address
,
or
Host Range
.
4
In the address text boxes, type the host or network IP address,
or type the range of IP addresses that identify the computers on
the external network that can send traffic to the service host.
Type Network IP addresses in “slash” notation (also known as CIDR or
Classless Inter-Domain Routing notation). For more information on
entering IP addresses in slash notation, see this FAQ:
http://www.watchguard.com/support/advancedfaqs/general_slash.asp
5
Click
Add
. The
From
box shows the host range, host IP address,
or network IP address that you typed.
Repeat steps 3—5 until all of the address information for this custom
service is set. The From box can have more than one entry.
6
If this service is only for incoming traffic, keep the outgoing
filter set to
No Rule
.
To limit which computers can send information using this service, go to
the subsequent section, “Filtering outgoing traffic for services.”
7
Click
Submit
.
Filtering outgoing traffic for services
These steps restrict outgoing traffic through the Firebox. Refer to
the previous section for information on filtering incoming traffic.
1
From the
Outgoing Filter
drop-down list, select
Allow
or
Deny
.
To allow all outgoing traffic from the trusted or optional network to the
external network using this service, skip to step 9.
2
To limit which computers on the trusted or optional network
can send traffic to the external network using this service, use
the drop-down list below the
From
box to select
Host IP
Address
,
Network IP Address
, or
Host Range
.
To only limit which computers receive information, skip to step 5.
Содержание Firebox X15
Страница 14: ...xiv WatchGuard Firebox X Edge...
Страница 42: ...Installing the Firebox X Edge 28 WatchGuard Firebox X Edge...
Страница 72: ...Configuration and Management Basics 58 WatchGuard Firebox X Edge...
Страница 146: ...Configuring Logging and System Time 132 WatchGuard Firebox X Edge...
Страница 168: ...Managing Users and Groups 154 WatchGuard Firebox X Edge...
Страница 204: ...Configuring Virtual Private Networks 190 WatchGuard Firebox X Edge...
Страница 241: ...About IEEE 802 11g b Wireless User Guide 227 cent When a different modulation scheme is selected the data rate changes...
Страница 242: ...228 WatchGuard Firebox X Edge...
Страница 249: ...Certifications and Notices User Guide 235 Taiwanese Notices...
Страница 250: ...236 WatchGuard Firebox X Edge Declaration of Conformity...