Organizing addresses into address groups
You can organize related addresses into address groups to make it easier to add policies. If you add 3
addresses, and then add them to an address group, you only have to add one policy for these addresses
rather than a separate policy for each address.
You can add External, Internal, and DMZ address groups.
To add an address group:
•
Go to
Firewall > Address > Group
.
•
Choose the type of address group to add.
Click New Int. Group to create an internal address group.
Click New Ext. Group to create an external address group.
Click New DMZ Group to create a DMZ address group.
•
Enter a Group Name to identify the address group.
•
To add addresses to the address group, select an address from the Available Addresses list and click
the right arrow to add it to the Members list.
•
To remove addresses from the address group, select an address from the Members list and click the
left arrow to remove it from the group.
•
Click OK to add the address group.
Example internal address group
Services
Use services to control the types of communication accepted or denied by the firewall. You can add any
of the pre-configured services listed in
to a policy. You can also create
your own custom services and add services to service groups.
This section describes:
•
•
Providing access to custom services
•
DFL-1000 User’s Manual
37