IPv4 Firewall Protection
110
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
The following table describes the fields that define the rules for outbound traffic and that are
common to most Outbound Service screens (see Figure 55 on page 118, Figure 58 on
page 121, and Figure 61 on page 124).
The steps to configure outbound rules are described in the following sections:
• Set LAN WAN Rules
• Create DMZ WAN Rules
• Create LAN DMZ Rules
Table 27. Outbound rules overview
Setting Description
Service The service or application to be covered by this rule. If the service or application does not
display in the list, you need to define it using the Services screen (see Add Customized
Services on page 136).
Action The action for outgoing connections covered by this rule:
• BLOCK always
• BLOCK by schedule, otherwise allow
• ALLOW always
• ALLOW by schedule, otherwise block
Note: Any outbound traffic that is not blocked by rules you create is all
owed by the
default rule.
Note: ALLOW rules are useful only if the traffic is alre
ady covered by a BLOCK rule. That
is, you wish to allow a subset of traffic that is currently blocked by another rule.
Select Schedule The time schedule (that is, Schedule1, Schedule2, or Schedule3) that is used by this rule.
• This drop-down list is activated only when BL
OCK by schedule, otherwise allow or
ALLOW by schedule, otherwise block is selected as the action.
• Use the Schedule screen to confi
gure the time schedules (see Set a Schedule to Block
or Allow Specific Traffic on p
age 146).
LAN Users The settings that determine which computers
on your network are affected by this rule.
The options are:
• Any. All
PCs and devices on your LAN.
• Sing
le address. Enter the required address in the Start field to apply the rule to a
single device on your LAN.
• Add
ress range. Enter the required addresses in the Start and Finish fields to apply the
rule to a range of devices.
• Gr
oup. Select the LAN group to which the rule applies. Use the LAN Groups screen to
assign PCs to groups (see Manage the Network Database on
page 60).
WAN Users The settings that determine which Internet lo
cations are covered by the rule, based on
their IP address. The options are:
• Any. All
Internet IP address are covered by this rule.
• Single address. Enter the required address in the Start field.
• Ad
dress range. Enter the required addresses the Start and Finish fields.