Adding a Network-based Policy
You can configure the firewall for blocking packets or traffics from
an area with low integrity. You can implement the firewall policy with
the 5-tuple firewall rules.
- Click Policy.
- Select the Security Program
Policy tab.
- Click Add.
- To detect and block attacks made on the network,
select the Enable firewall
checkbox. Under the Network
tab, click Add.
- Configure the rules for the firewall policy.
- Enable: Select whether to enable the firewall
policy or not.
- Name: Enter a name for the policy between 1
to 128 characters.
- Direction: Select the direction of sending
the packet or traffic to block.
- Action: Select the action to take.
- Protocol: Select the protocol type to block
with the firewall policy.
- Source IP: Enter the source IP address to block.
- Source Port: Enter the source port number to
block.
- Destination IP: Enter the destination IP address
to block.
- Destination Port: Enter the destination port
number to block.
- Description: Enter a description for the policy.
- Click OK
to create the policy.
- Set the priority of the registered firewall
policy by using
and
in the
list. When a packet comes in, the system checks the packet against
a policy with higher priority. If the system finds the policy that
can process the packet, it is processed according to that policy,
and the firewall policy is no longer searched.
- Click Save.