Firewall
290
8.3
The BAT Firewall
BAT54-Rail/F..
Release
7.54
06/08
Rule table
The rule table combines different information to a Firewall rule. The rule con-
tains the protocol to be filtered, the source, the destination as well as the Fire-
wall action to be executed. For each Firewall rule there is an additional on/
off-switch, a priority, the option for a linkage with other rules and an activation
of the rule for VPN connections. General information concerning these pa-
rameters can be found in section ’Parameters of Firewall rules’ → page 268.
The definition of the Firewall rules can be composed of entries of the object
table for protocols, services, stations (→ Page 290), and of entries of the ac-
tion table for Firewall actions(→ Page 292). It can also contain direct descrip-
tions in the appropriate LCOS syntax (e. g. %P6 for TCP).
Note: For direct entering of rule parameters in LCOS syntax, the same guide-
lines apply as described in the following sections for protocols, source and
destination, as well as for Firewall actions.
Object table
The object table defines elements and objects that apply to the rule table of
the Firewall. Objects can be:
D Single PCs (MAC or IP address, host name)
D Entire networks
D Protocols
D Services (ports or port ranges, e. g. HTTP, Mail&News, FTP, ...)