8 Menu Firewall
Securepoint 10
Securepoint
Security Solutions
71
8.1.3 Organize Rules and Groups
The order of rules in the portfilter can have a big effect on the performance of the appliance
because the rules are executed sequentially.
If a packet passes through all rules of the portfilter and is dropped by the last rule, it could be
more sensible to position the blocking rule at the top of the portfilter. Especially if this kind of
packets come in often.
You can not only move single rules but also rule groups and rules inside of a group. It is also
possible to move rules from one group into another.
For organizing the rule use “Drag & Drop” and the context menu which opens with a right
mouse click.
fig. 72 context menu of the portfilter dialog
The context menu offers the possibility to create rules and groups at defined positions. So
you don’t have to move them after creation.
Switch the status of a highlighted rule by using the option
Toggle Active
. The option
Toggle
Group
changes the status of all rules in a group.
The context menu also includes the options
Edit
and
Delete
.
In the second column of every row you will find the
wrench-
and the
trashcan symbol
for
editing and deletion.
Instrumental in managing the rule set are the options
Open Groups
and
Close Groups
.
They open or close all groups in the list. The symbols in front of the groups open or close a
single group.
The green symbol with the two arrows presents a closed group.
Click on it to open the group.
The red symbol presents an open group. Click on it to close the
group.