Chapter 6 - Security Configuration
Confidential and Proprietary Information of ZTE CORPORATION
87
Destination Port Start
Start port no. of the destination address
Destination Port End
End port no. of the destination address
Interface In
Ingress interface of the source address
Interface Out
Egress interface of the destination address
For example, we can configure a policy that prohibits FTP access by
using the host IP address of 192.168.1.2 on langroup1 as the source
and the IP address of 192.168.2.13 on langroup2 as the destination.
Then, set
Source IP Address
as 192.168.1.2 and
Destination IP
Address
as 192.168.2.13, select TCP for
Protocol,
fill in 21 for
both the start port and end port, select langroup1 for
Interface In
and langroup2 for
Interface Out,
name this rule, select the
Enable
IP Filter
option, and then click the
Add
button.
Setting URL and WEB Filter
Click the
Web Filter
link on the left part of the WEB page to
enter
the
Web Filter
page, which consists of the
Filtering Rule
and
Filtering Policy
parts used to set rule (validation condition) and
policy (filter condition) respectively and filter HTTP request for the
Web server by any client. At most 100 rule/policy entries can be
configured.