Chapter 37 System
ZyWALL ATP Series User’s Guide
726
37.8.5 Service Control Rules
Click the
Add
or
Edit
icon in the
Service Control
table to add a service control rule.
Figure 492
Configuration > System > SSH > Service Control Rule Add/Edit
The following table describes the labels in this screen.
Server Certificate
Select the certificate whose corresponding private key is to be used to identify the Zyxel
Device for SSH connections. You must have certificates already configured in the
My
Certificates
screen.
Service Control
This specifies from which computers you can access which Zyxel Device zones.
Add
Click this to create a new entry. Select an entry and click
Add
to create a new entry after the
selected entry. Refer to
for details on the screen that opens.
Edit
Double-click an entry or select it and click
Edit
to be able to modify the entry’s settings.
Remove
To remove an entry, select it and click
Remove
. The Zyxel Device confirms you want to remove
it before doing so. Note that subsequent entries move up by one when you take this action.
Move
To change an entry’s position in the numbered list, select the method and click
Move
to
display a field to type a number for where you want to put it and press [ENTER] to move the rule
to the number that you typed.
#
This the index number of the service control rule.
Zone
This is the zone on the Zyxel Device the user is allowed or denied to access.
Address
This is the object name of the IP address(es) with which the computer is allowed or denied to
access.
Action
This displays whether the computer with the IP address specified above can access the Zyxel
Device zone(s) configured in the
Zone
field (
Accept
) or not (
Deny
).
Apply
Click
Apply
to save your changes back to the Zyxel Device.
Reset
Click
Reset
to return the screen to its last-saved settings.
Table 314 Configuration > System > SSH (continued)
LABEL
DESCRIPTION
Table 315 Configuration > System > SSH > Service Control Rule Add/Edit
LABEL
DESCRIPTION
Create new
Object
Use this to configure any new settings objects that you need to use in this screen.
Address Object
Select
ALL
to allow or deny any computer to communicate with the Zyxel Device using SSH.
Select a predefined address object to just allow or deny the computer with the IP address that
you specified to access the Zyxel Device using SSH.
Zone
Select
ALL
to allow or prevent any Zyxel Device zones from being accessed using SSH.
Select a predefined Zyxel Device zone on which a incoming service is allowed or denied.