Firewall Protection
144
NETGEAR ProSAFE VPN Firewall FVS318G v2
• LAN Users
• WAN Users
Unless your selectio
n from the Action
list is BLOCK always, you also must make a
selection from the Select Schedule list.
6. Click the Appl
y button.
Your changes are saved.
Configure DMZ WAN Rules
The firewall rules for traffic between the DMZ and the Internet are configured on the DMZ
WAN Rules screen. The default outbound policy is to block all traffic from and to the Internet.
You can then apply firewall rules to allow specific types of traffic either going out from the
DMZ to the Internet (outbound) or coming in from the Internet to the DMZ (inbound).
The DMZ WAN Rules screen does not provide a list that lets you set the defa
ult outbound
policy as the LAN WAN Rules screen does. You can change the default outbound policy by
enabling all outbound traffic and then blocking only specific services from passing through
the VPN firewall. You do so by adding outbound services rules. For more information, see
Create DMZ WAN Outbound Service Rules on page
147.
Inbound rules on the LAN WAN Rules screen take precedence over inbound rules o
n the
DMZ WAN Rules screen. When an inbound packet matches an inbound rule on the LAN
WAN Rules screen, the packet is not matched against the inbound rules on the DMZ WAN
Rules screen.
This section contains the following topics:
• Create DMZ WAN Outbound Service Rules
• Create DMZ WAN Inbound Service Rules
To access the DMZ WAN Rules screen for IPv4 or to change existing IPv4 rules:
1. Log in to the unit:
a. In the address field of any of the qualified web browsers, enter
https://192.168.1.1.
The NETGEAR Configuration Manager Login screen displays.
b. In the User
name field, enter admin and in the Password / Passcode field, enter
password.
Use lowercase letters. If you changed the password, enter your persona
lized
password. Leave the domain as it is (geardomain).
c. Click the L
ogin button.
The Router Status screen displays. After five minutes of inactivity,
which is the default
login time-out, you are automatically logged out.