Security Mode Configuration Commands
112
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
security-config[schedules]>
time_of_day end mins 00
security-config[schedules]>
time_of_day end meridiem PM
security-config[schedules]>
save
Related show command: show security schedules setup
IPv4 Add Firewall Rule and Edit Firewall Rule Commands
security firewall ipv4 add_rule lan_wan outbound
This command configures a new IPv4 LAN WAN outbound firewall rule. After you have
issued the security firewall ipv4 add_rule lan_wan outbound command, you
enter the security-config [firewall-ipv4-lan-wan-outbound] mode, and then you can configure
one keyword and associated parameter or associated keyword at a time in the order that you
prefer. However, note that the setting of the action keyword determines which other
keywords and parameters can you can apply to a rule.
Step 1 Format security firewall ipv4 add_rule lan_wan outbound
Mode security
Step 2 Format service_name {default_services <default service name> |
{custom_services <custom service name>}
action {ALWAYS_BLOCK | ALWAYS_ALLOW |
BLOCK_BY_SCHEDULE_ELSE_ALLOW {schedule {Schedule1 |
Schedule2 | Schedule3}} | ALLOW_BY_SCHEDULE_ELSE_BLOCK
{schedule {Schedule1 | Schedule2 | Schedule3}}}
lan_users {address_wise {ANY | SINGLE_ADDRESS {lan_user_start_ip
<ipaddress>} | ADDRESS_RANGE {lan_user_start_ip <ipaddress>}
{lan_user_end_ip <ipaddress>}} | group_wise <group name>}
wan_users {address_wise {ANY | SINGLE_ADDRESS {wan_user_start_ip
<ipaddress>} | ADDRESS_RANGE {wan_user_start_ip <ipaddress>}
{wan_user_end_ip <ipaddress>}} | group_wise <group name>}
qos_profile <profile name>
log {N
EVER | ALWAYS}
bandwidth_profile <profile name>
{nat_ip type {Auto | WAN1 | WAN2 | WAN3 | WAN4} | address
<ipaddress>}
Mode security-config [firewall-ipv4-lan-wan-outbound]