Wanguard 6.2 User Guide
Reports » Tools
●
Firewall Policy
– Select the Software Firewall policy applied for the matched packets:
◦
Drop – blocks packets and makes the connection appear to be to an unoccupied IP address
◦
Reject – blocks packets and sends an ICMP packet indicating the port is unavailable
◦
Accept – allows packets through the firewall
◦
Rate Limit – allows a limited number of packets through the firewall
●
Rate Limit
– You can use this parameter to limit rate of packets / time unit to a predefined value. If the
value ends with the character “b” then the rate-limiting is applied for bytes not packets.
●
Rate Limit Hashing
– You can apply the rate-limiting globally, to a single object (
Src. IP
,
Src. Port
,
Dst. IP
or
Dst. Port
) or any combination of objects. If the rate-limiting should be connection-oriented, select all
objects. To rate-limit the packet or byte rate of each source IP, select the
Src. IP
object.
●
Rule Active Until
– Select
Manually deleted
to apply the firewall rule indefinitely. Select the other
options to remove the firewall rule after a predefined condition.
The
Create Chelsio Firewall Rule
window provides the following options:
●
Rule Description
– A short name that helps you identify the firewall rule. This is the only mandatory
field.
●
Direction
– Select
Inbound
to match packets entering your network (through interfaces defined as
Inbound in the Filter Configuration window). Otherwise, select
Outbound
.
●
Filter(s)
– Select the Filters that must apply the firewall rule, according to their configuration (Interfaces,
Hardware Firewall Policy).
●
IP Protocol(s)
– Select one or more IP protocols, or
Any
to match all packets.
●
Src/Dst IP/mask
– Enter to match packets by their source or destination IP blocks. The mask is optional
(defaults to /32 for IPv4 and /128 for IPv6).
●
Src/Dst Port(s)
– This field is available only for the following IP protocols: TCP, UDP, UDPLITE, DCCP and
SCTP. It matches a set of source or destination ports. Up to 15 ports can be specified (e.g. 53,
1024:65535 would match ports 53 and all from 1024 through 65535).
●
Rule Active Until
– Select
Manually deleted
to apply the firewall rule indefinitely. Select the other
options to remove the firewall rule after a predefined condition.
When there is at least one active firewall rule, a table describing it and showing the exact number of
matches is displayed.
Filtering Rules
Lists filtering rules detected by the selected Filter(s) for the selected time frame. Most fields are described in
the “Reports »
Tools » Anomalies” chapter on page 74.
- 81 -
Summary of Contents for wanguard 6.2
Page 1: ......