used here for the purpose of illustration.
Command-Line Interface
A. Create the
GeolocationFilter
object:
gw-world:/> add GeolocationFilter hackerland_filter
Countries=Hackerland
MatchUnknown=true
B. Next, create the
IP Policy
object that uses this filter:
gw-world:/> add IPPolicy SourceInterface=any
SourceNetwork=all-nets
DestinationInterface=any
DestinationNetwork=all-nets
Service=all_services
Name=lan_to_dmz
Action=Deny
Drop=Yes
SourceGeoFilter=hackerland_filter
Web Interface
A. Create the
GeolocationFilter
object:
1.
Go to: Policies > Firewalling > Geolocation Filter > Add > Geolocation Filter
2.
Now enter:
•
Name: hackerland_filter
•
Add the country
Hackerland
to the Selected list
•
Enable Match unclassified networks
3.
Click OK
B. Next, create the
IP Policy
object that uses this filter:
1.
Go to: Policies > Firewalling > Add > IP Policy
2.
Now enter:
•
Name: drop_hackerland
•
Action: Deny
•
Denied Behavior: Drop
•
Source Interface: any
•
Source Network: all-nets
•
Source Geolocation: hackerland_filter
•
Destination Interface: any
•
Destination Network: all-nets
•
Destination Geolocation: Anywhere
Chapter 3: Fundamentals
250
Summary of Contents for NetDefendOS
Page 30: ...Figure 1 3 Packet Flow Schematic Part III Chapter 1 NetDefendOS Overview 30 ...
Page 32: ...Chapter 1 NetDefendOS Overview 32 ...
Page 144: ...Chapter 2 Management and Maintenance 144 ...
Page 284: ...Chapter 3 Fundamentals 284 ...
Page 392: ...Chapter 4 Routing 392 ...
Page 419: ... Host 2001 DB8 1 MAC 00 90 12 13 14 15 5 Click OK Chapter 5 DHCP Services 419 ...
Page 420: ...Chapter 5 DHCP Services 420 ...
Page 573: ...Chapter 6 Security Mechanisms 573 ...
Page 607: ...Chapter 7 Address Translation 607 ...
Page 666: ...Chapter 8 User Authentication 666 ...
Page 775: ...Chapter 9 VPN 775 ...
Page 819: ...Chapter 10 Traffic Management 819 ...
Page 842: ...Chapter 11 High Availability 842 ...
Page 866: ...Default Enabled Chapter 13 Advanced Settings 866 ...
Page 879: ...Chapter 13 Advanced Settings 879 ...