ZyWALL Series Internet Security Gateway
Firewall Screens
12-1
Chapter 12
Firewall Screens
This chapter shows you how to configure your ZyWALL firewall.
12.1 Access Methods
The web configurator is, by far, the most comprehensive firewall configuration tool your ZyWALL has to
offer. For this reason, it is recommended that you configure your firewall using the web configurator. SMT
screens allow you to activate the firewall. CLI commands provide limited configuration options and are only
recommended for advanced users, please refer to the
Appendices
for firewall CLI commands.
12.2 Firewall Policies Overview
Firewall rules are grouped based on the direction of travel of packets to which they apply:
•
LAN to LAN/ZyWALL
•
WAN to LAN
•
DMZ to LAN
•
LAN to WAN
•
WAN to WAN/ZyWALL
•
DMZ to WAN
•
LAN to DMZ
•
WAN to DMZ
•
DMZ to DMZ/ZyWALL
DMZ is not available on all models.
By default, the ZyWALL’s stateful packet inspection allows packets traveling in the following directions:
•
LAN to LAN/ZyWALL
This allows computers on the LAN to manage the ZyWALL and communicate between networks or
subnets connected to the LAN interface.
•
LAN to WAN
•
LAN to DMZ
•
WAN to DMZ
•
DMZ to WAN
By default, the ZyWALL’s stateful packet inspection blocks packets traveling in the following directions:
•
WAN to LAN
•
WAN to WAN/ZyWALL
Содержание Internet Security Gateway ZyWALL 100
Страница 1: ...ZyWALL 10W 30W 50 100 Internet Security Gateway User s Guide Version 3 62 February 2004 ...
Страница 8: ......
Страница 32: ......
Страница 42: ......
Страница 52: ...ZyWALL Series Internet Security Gateway 1 10 Getting to Know Your ZyWALL Figure 1 2 VPN Application ...
Страница 60: ......
Страница 74: ......
Страница 92: ......
Страница 102: ......
Страница 103: ...DMZ and WAN III Part III DMZ and WAN This part covers configuration of the DMZ and WAN screens ...
Страница 104: ......
Страница 108: ......
Страница 124: ...ZyWALL Series Internet Security Gateway 8 16 WAN Screens Figure 8 10 Dial Backup Setup ...
Страница 132: ......
Страница 134: ......
Страница 156: ......
Страница 170: ......
Страница 217: ...VPN IPSec VI Part VI VPN IPSec This part provides information on how to configure Virtual Private Networks ...
Страница 218: ......
Страница 224: ......
Страница 235: ...ZyWALL Series Internet Security Gateway VPN Screens 15 11 Figure 15 5 VPN IKE ...
Страница 260: ......
Страница 262: ......
Страница 282: ...ZyWALL Series Internet Security Gateway 16 20 Certificates Figure 16 9 Trusted CA Details ...
Страница 291: ...ZyWALL Series Internet Security Gateway Certificates 16 29 Figure 16 14 Trusted Remote Host Details ...
Страница 298: ......
Страница 300: ......
Страница 302: ...ZyWALL Series Internet Security Gateway 17 2 Authentication Server Figure 17 1 Local User Database ...
Страница 308: ......
Страница 350: ......
Страница 351: ...Logs IX Part IX Logs This part provides information and instructions for the logs and reports ...
Страница 352: ......
Страница 356: ...ZyWALL Series Internet Security Gateway 20 4 Log Screens Figure 20 2 Log Settings ...
Страница 364: ......
Страница 365: ...Maintenance X Part X Maintenance This part covers the maintenance screens ...
Страница 366: ......
Страница 378: ......
Страница 380: ......
Страница 386: ...ZyWALL Series Internet Security Gateway 22 6 Introducing the SMT Figure 22 5 Advanced Management SMT Menus ...
Страница 406: ......
Страница 420: ......
Страница 428: ......
Страница 446: ......
Страница 466: ......
Страница 490: ......
Страница 504: ......
Страница 524: ......
Страница 536: ......
Страница 538: ......
Страница 554: ......
Страница 574: ......
Страница 580: ......
Страница 586: ......
Страница 588: ......
Страница 590: ......
Страница 592: ......
Страница 604: ......
Страница 608: ......
Страница 610: ......
Страница 614: ......
Страница 624: ......
Страница 634: ......
Страница 636: ......
Страница 648: ......
Страница 654: ......
Страница 680: ......
Страница 682: ......