Network Security > Packet Filter > FLM
Network Security
136
RM GUI HiSecOS EAGLE20/30
Release
3.0
09/2015
Network Security > Packet Filter > FLM
4.4 Firewall Learning Mode
You use Firewalls to help protect your network from attacks. If an application
requires information from the Internet, then the "Firewall Learning Mode"
function helps you specify which connections you allow to have access to
your network.
The maximum number of rules that you can configure using the "Firewall
Learning Mode" function depends on the number of rules already configured
in the "Packet Filter Rule" dialog. The device allows you to configure up to a
total of
2048
rules.
The "Firewall Learning Mode" function only applies to packets that pass
through the device matching the FORWARD chain. The packets that the
device receives on the INPUT chain, and those that the device creates on the
OUTPUT chain traverse the device unrestricted. During the learning phase
the device retains SSH, SNMP, and GUI access.
The "Firewall Learning Mode" function requires you to configure and select
at least 2 routing interfaces on the device.
The maximum number of connections that "Firewall Learning Mode" can
learn is
65535
.
Note: During the learning phase your network is temporarily exposed,
because "Firewall Learning Mode" configures rules to accept every data
packet on the selected ports.
The dialog contains the following tabs:
Configuration
Rules