8 Menu Firewall
Securepoint 10
Securepoint
Security Solutions
65
A rule always has the following structure:
Who (where from/which source) uses which service to access a defined destination.
Then you have to decide if the activity is allowed (Accept), denied (Drop) or refused (Re-
ject). With the action Drop the data packet will be discarded. The action Reject will
transmit to
the sender the error message “Destination unreachable”.
You can log the traffic when it is matched by a rule. You can decide between three set-
tings:
o
None
à
No logging.
o
Short
à
The first three packets of a new connection will be logged. After a minute the
next three packets will be logged.
o
Long
à
All packets will be logged.
The rule can be limited temporarity (days and time).
A short description can be set.
With the
wrench symbol
beneath the rule you can call a dialog for editing the rule.
With the
trashcan symbol
beneath the rule you can delete the rule.
Rules can be dis
sarranged by „Drag and Drop“. The order of the rules in the portfilter can be
important because the rules will be processed in sequence (Once dropped packets cannot
be accepted by a later rule.).
Notice:
To activate new rules you have to click the button
Update Rule
in the
Portfilter
Dialog.
If you changed the order of the rules you have to update the rules also.