D-Link DSR-Series User Manual 185
Section 8 - Security
Bridge Firewall Rules
Path: Security > Firewall > Firewall Rules > Bridge Firewall Rules
Note: Bridge Firewall Rules is available only in DSR Octeon models.
A īrewall is a security mechanism to selectively block or allow certain types of traīc in accordance with rules
speciīed by network administrators. You can use this page to manage the īrewall rules that control traīc
between interfaces of your Bridged network.
The List of Bridge Firewall Rules table includes all īrewall rules for the bridged network and allows several
operations on the īrewall rules. By default in Bridge Mode, all access is allowed for Inbound and Outbound
direction between the interfaces of the bridged network. Inbound Rules govern access from DMZ Port to the
LAN Port1 interface. Outbound rules restrict access to traīc leaving your LAN Port1 interface. Firewall rules are
applied in the order listed. As a general rule, you should move the strictest rules (those with the most speciīc
services or addresses) to the top of the list.
To create a new bridge īrewall rule:
1. Click Security > Firewall > Firewall Rules > Bridge Firewall Rules tab.
2. The īelds displayed on the Bridge Firewall Rules are given below.
Field Description
Status It displays the status of the rule. It can be Enabled (active) or Disabled (conīgured but not in use).
Direction
It displays the direction of the source of the traīc that is controlled by this īrewall rule: Inbound or
Outbound.
Service
It displays the service that is controlled by this īrewall rule. The name usually indicates the type of
traīc the rule covers such as FTP, SSH, telnet, ping, etc. Services that are not present in the list can
be added as a Custom Service.
Action It displays the action to be taken on the enabled rule.
Source Hosts It displays the hosts that originate the traīc for this īrewall rule.
Destination Hosts It displays the hosts that receive the traīc for this īrewall rule.
Source MAC It displays the MAC Address of the hosts that originate the traīc for this īrewall rule.
Destination MAC It displays the MAC Address of the hosts that receive the traīc for this īrewall rule.