Chapter 20 Security Policy
USG20(W)-VPN Series User’s Guide
326
Figure 216
Configuration > Security Policy > Policy Control > Add
The following table describes the labels in this screen.
Table 127
Configuration > Security Policy > Policy Control > Add
LABEL
DESCRIPTION
Create new
Object
Use to configure any new settings objects that you need to use in this screen.
Enable
Select this check box to activate the Security policy.
Name
Type a name to identify the policy
Description
Enter a descriptive name of up to 60 printable ASCII characters for the Policy. Spaces are
allowed.
From
To
For through-USG policies, select the direction of travel of packets to which the policy applies.
any
means all interfaces.
Device
means packets destined for the USG itself.
Source
Select an IPv4 / IPv6 address or address group object to apply the policy to traffic coming
from it. Select
any
to apply the policy to all traffic coming from IPv4 / IPv6 addresses.
Destination
Select an IPv4 / IPv6 address or address group to apply the policy to traffic going to it.
Select
any
to apply the policy to all traffic going to IPv4 / IPv6 addresses.
Service
Select a service or service group from the drop-down list box.
User
This field is not available when you are configuring a to-USG policy.
Select a user name or user group to which to apply the policy. The Security Policy is
activated only when the specified user logs into the system and the policy will be disabled
when the user logs out.
Otherwise, select
any
and there is no need for user logging.
Note: If you specified a source IP address (group) instead of
any
in the field below, the user’s
IP address should be within the IP address range.
Schedule
Select a schedule that defines when the policy applies. Otherwise, select
none
and the
policy is always effective.
Summary of Contents for ZyWall USG20-VPN
Page 17: ...17 PART I User s Guide ...
Page 18: ...18 ...
Page 99: ...99 PART II Technical Reference ...
Page 100: ...100 ...