Chapter 30 System
USG20(W)-VPN Series User’s Guide
554
Figure 378
Configuration > System > DNS > Service Control Rule Add
The following table describes the labels in this screen.
30.7 WWW Overview
The following figure shows secure and insecure management of the USG coming in from the WAN.
HTTPS and SSH access are secure. HTTP and Telnet access are not secure.
Note: To allow the USG to be accessed from a specified computer using a service, make
sure you do not have a service control rule or to-USG security policy rule to block
that traffic.
To stop a service from accessing the USG, clear
Enable
in the corresponding service screen.
30.7.1 Service Access Limitations
A service cannot be used to access the USG when:
1
You have disabled that service in the corresponding screen.
2
The allowed IP address (address object) in the
Service Control
table does not match the client IP
address (the USG disallows the session).
Table 240
Configuration > System > DNS > Service Control Rule Add
LABEL
DESCRIPTION
Create new
Object
Use this to configure any new settings objects that you need to use in this screen.
Address Object
Select
ALL
to allow or deny any computer to send DNS queries to the USG.
Select a predefined address object to just allow or deny the computer with the IP address
that you specified to send DNS queries to the USG.
Zone
Select
ALL
to allow or prevent DNS queries through any zones.
Select a predefined zone on which a DNS query to the USG is allowed or denied.
Action
Select
Accept
to have the USG allow the DNS queries from the specified computer.
Select
Deny
to have the USG reject the DNS queries from the specified computer.
OK
Click
OK
to save your customized settings and exit this screen.
Cancel
Click
Cancel
to exit this screen without saving
Summary of Contents for ZyWall USG20-VPN
Page 17: ...17 PART I User s Guide ...
Page 18: ...18 ...
Page 99: ...99 PART II Technical Reference ...
Page 100: ...100 ...