Chapter 25 Secure Policy
ZyWALL / USG (ZLD) CLI Reference Guide
164
25.2 Secure Policy Commands
The following table identifies the values required for many of these commands. Other input values
are discussed with the corresponding commands.
The following table describes the commands available for the secure policy. You must use the
configure terminal
command to enter the configuration mode before you can use the
configuration commands. Commands that do not have IPv6 specified in the description are for IPv4.
Table 84
Input Values for Secure Policy Commands
LABEL
DESCRIPTION
address_object
The name of the IP address (or address group) object. You may use 1-31
alphanumeric characters, underscores(
_
), or dashes (-), but the first character
cannot be a number. This value is case-sensitive.
address6_object
The name of the IPv6 address (or address group) object. You may use 1-31
alphanumeric characters, underscores(
_
), or dashes (-), but the first character
cannot be a number. This value is case-sensitive.
user_name
The name of a user (group). You may use 1-31 alphanumeric characters,
underscores(
_
), or dashes (-), but the first character cannot be a number. This value
is case-sensitive.
zone_object
The name of the zone. For some ZyWALL / USG models, use up to 31 characters (a-
zA-Z0-9_-). The name cannot start with a number. This value is case-sensitive.
For other ZyWALL / USGmodels, use pre-defined zone names like DMZ, LAN1, SSL
VPN, IPSec VPN, OPT, and WAN.
rule_number
The priority number of a secure policy. 1 -
X
where
X
is the highest number of rules
the ZyWALL / USG model supports. See the ZyWALL / USG’s User’s Guide for details.
schedule_object
The name of the schedule. You may use 1-31 alphanumeric characters,
underscores(
_
), or dashes (-), but the first character cannot be a number. This value
is case-sensitive.
service_name
The name of the service (group). You may use 1-31 alphanumeric characters,
underscores(
_
), or dashes (-), but the first character cannot be a number. This value
is case-sensitive.
Table 85
Command Summary: Secure Policy
COMMAND
DESCRIPTION
secure-policy activate
Enables Secure Policy on the ZyWALL / USG to
perform access control.
show secure-policy filter from
zone_object
to
zone_object
srcip <
ip-address
> dstip <
ip
> service {any |
tcp | udp | icmp | gre | esp | user-defined}
port-number
user
user_name
sch
schedule_object
Applies IPv4 search filters to find specific IPv4 security
policies based on direction, application, user, source,
destination and/or schedule.
[no] secure-policy asymmetrical-route activate
Allows or disallows asymmetrical route topology.
secure-policy
rule_number
Enters the secure policy sub-command mode to set a
firewall rule. See
for the sub-
commands.
secure-policy
zone_object
{
zone_object
|ZyWALL}
rule_number
Enters the secure policy sub-command mode to set a
direction specific through-ZyWALL rule or to-ZyWALL
rule. See
for the sub-
commands.
secure-policy
zone_object
{
zone_object
|ZyWALL} append
Enters the secure policy sub-command mode to add a
direction specific through-ZyWALL rule or to-ZyWALL
rule to the end of the global rule list. See
for the sub-commands.
Содержание ZyWALL USG Series
Страница 19: ...19 PART I Introduction ...
Страница 20: ...20 ...
Страница 38: ...Chapter 2 User and Privilege Modes ZyWALL USG ZLD CLI Reference Guide 38 ...
Страница 39: ...39 PART II Reference ...
Страница 40: ...40 ...
Страница 48: ...Chapter 4 Status ZyWALL USG ZLD CLI Reference Guide 48 ...
Страница 52: ...Chapter 5 Registration ZyWALL USG ZLD CLI Reference Guide 52 ...
Страница 128: ...Chapter 15 Route ZyWALL USG ZLD CLI Reference Guide 128 ...
Страница 136: ...Chapter 17 Zones ZyWALL USG ZLD CLI Reference Guide 136 ...
Страница 140: ...Chapter 18 DDNS ZyWALL USG ZLD CLI Reference Guide 140 ...
Страница 148: ...Chapter 20 HTTP Redirect ZyWALL USG ZLD CLI Reference Guide 148 ...
Страница 152: ...Chapter 21 ALG ZyWALL USG ZLD CLI Reference Guide 152 ...
Страница 156: ...Chapter 22 UPnP ZyWALL USG ZLD CLI Reference Guide 156 ...
Страница 159: ...Chapter 23 IP MAC Binding ZyWALL USG ZLD CLI Reference Guide 159 ...
Страница 178: ...Chapter 25 Secure Policy ZyWALL USG ZLD CLI Reference Guide 178 ...
Страница 218: ...Chapter 32 Application Patrol ZyWALL USG ZLD CLI Reference Guide 218 ...
Страница 236: ...Chapter 34 IDP Commands ZyWALL USG ZLD CLI Reference Guide 236 ...
Страница 246: ...Chapter 35 Content Filtering ZyWALL USG ZLD CLI Reference Guide 246 ...
Страница 256: ...Chapter 36 Anti Spam ZyWALL USG ZLD CLI Reference Guide 256 ...
Страница 262: ...Chapter 37 SSL Inspection ZyWALL USG ZLD CLI Reference Guide 262 ...
Страница 268: ...Chapter 38 Device HA ZyWALL USG ZLD CLI Reference Guide 268 ...
Страница 284: ...Chapter 41 Addresses ZyWALL USG ZLD CLI Reference Guide 284 ...
Страница 288: ...Chapter 42 Services ZyWALL USG ZLD CLI Reference Guide 288 ...
Страница 302: ...Chapter 46 Authentication Server ZyWALL USG ZLD CLI Reference Guide 302 ...
Страница 338: ...Chapter 52 System Remote Management ZyWALL USG ZLD CLI Reference Guide 338 ...
Страница 358: ...Chapter 53 File Manager ZyWALL USG ZLD CLI Reference Guide 358 ...
Страница 372: ...Chapter 56 Session Timeout ZyWALL USG ZLD CLI Reference Guide 372 ...
Страница 374: ...Chapter 57 Diagnostics ZyWALL USG ZLD CLI Reference Guide 374 ...
Страница 384: ...Chapter 59 Maintenance Tools ZyWALL USG ZLD CLI Reference Guide 384 ...
Страница 426: ...List of Commands Alphabetical ZyWALL USG ZLD CLI Reference Guide 426 ...