Editing Policy Rules
103
marked
Name Service (DNS) [53,6]
deletes just the TCP portion of the
service.
Editing Policy Rules
Network Access Policy Rules evaluate network traffic’s source IP address,
destination IP address, and IP protocol type to decide if the IP traffic is
allowed to pass through the Firewall. Custom rules take precedence, and
may override the Firewall’s default state packet inspection. Up to 100
policy rules may be entered.
CAUTION:
The ability to define Network Access Rules is a very powerful
tool. Using custom rules, it is possible to disable all firewall protection or
block all access to the Internet. Use extreme caution when creating or
deleting Network Access Rules.
Network Access Rules do not disable protection from Denial of Service
attacks, such as SYN Flood, Ping of Death or LAND. However, it is possible
to create vulnerabilities to attacks that exploit vulnerabilities in
applications, such as WinNuke.
Viewing Network
Policy Rules
Click
Policy
, and then select the
Policy Rules
tab. A window similar to that
in Figure 46 displays.
Figure 46
Policy Rules Window
The
Current Network Policy Rules
table is an extension of the
Services
display covered in “Changing Policy Services” on page 97. In this display
you will see the default rules and any rules you have created. You can use
this screen to fine-tune services and add exceptions.
DUA1611-0AAA02.book Page 103 Thursday, August 2, 2001 4:01 PM
Summary of Contents for SUPERSTACK 3CR16110-95
Page 18: ...18 DUA1611 0AAA02 book Page 18 Thursday August 2 2001 4 01 PM...
Page 50: ...50 DUA1611 0AAA02 book Page 50 Thursday August 2 2001 4 01 PM...
Page 122: ...122 CHAPTER 8 ADVANCED SETTINGS DUA1611 0AAA02 book Page 122 Thursday August 2 2001 4 01 PM...
Page 152: ...152 DUA1611 0AAA02 book Page 152 Thursday August 2 2001 4 01 PM...
Page 174: ...174 DUA1611 0AAA02 book Page 174 Thursday August 2 2001 4 01 PM...
Page 190: ...190 CHAPTER 14 NETWORKING CONCEPTS DUA1611 0AAA02 book Page 190 Thursday August 2 2001 4 01 PM...
Page 192: ...192 DUA1611 0AAA02 book Page 192 Thursday August 2 2001 4 01 PM...
Page 206: ...206 APPENDIX D TECHNICAL SUPPORT DUA1611 0AAA02 book Page 206 Thursday August 2 2001 4 01 PM...
Page 212: ...212 INDEX DUA1611 0AAA02 book Page 212 Thursday August 2 2001 4 01 PM...
Page 214: ...DUA1611 0AAA02 book Page 214 Thursday August 2 2001 4 01 PM...