EasyManua.ls Logo

NETGEAR ProSAFE SRX5308 - Page 132

NETGEAR ProSAFE SRX5308
328 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Security Mode Configuration Commands
132
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Command example:
SRX5308>
security firewall ipv4 add_rule dmz_wan outbound
security-config[firewall-ipv4-dmz-wan-outbound]>
service_name default_services CU-SEEME:TCP
security-config[firewall-ipv4-dmz-wan-outbound]>
action BLOCK_BY_SCHEDULE_ELSE_BLOCK
security-config[firewall-ipv4-dmz-wan-outbound]>
schedule Schedule2
security-config[firewall-ipv4-dmz-wan-outbound]>
dmz_users ANY
security-config[firewall-ipv4-dmz-wan-outbound]>
wan_users ANY
security-config[firewall-ipv4-dmz-wan-outbound]>
qos_profile Video
security-config[firewall-ipv4-dmz-wan-outbound]>
log Never
security-config[firewall-ipv4-dmz-wan-outbound]>
nat_ip type WAN1
security-config[firewall-ipv4-dmz-wan-outbound]>
save
Related show command: show security firewall ipv4 setup dmz_wan
security firewall ipv4 edit_rule dmz_wan outbound <row id>
This command configures an existing IPv4 DMZ WAN outbound firewall rule. After you have
issued the security firewall ipv4 edit_rule dmz_wan outbound command to
specify the row to be edited (for row information, see the output of the
show security firewall
ipv4 setup dmz_wan
command), you enter the security-config
[firewall-ipv4-dmz-wan-outbound] mode. You can then edit one keyword and associated
parameter or associated keyword at a time in the order that you prefer. However, note that
the setting of the action keyword determines which other keywords and parameters you
can apply to a rule.
nat_ip address ipaddress The NAT IP address, if the address
is different from the IP address of a
WAN interface, for example, a
secondary WAN IP address.
Note: The nat_ip type and
nat_ip address keywords are
mutually exclusive.
Step 1 Format security firewall ipv4 edit_rule dmz_wan outbound <row id>
Mode security
Step 2 Format service_name {default_services <default service name> |
{custom_services <custom service name>}
action {ALWAYS_BLOCK | ALWAYS_ALLOW |
BLOCK_BY_SCHEDULE_ELSE_ALLOW {schedule {Schedule1 |
Schedule2 | Schedule3}} | ALLOW_BY_SCHEDULE_ELSE_BLOCK
{schedule {Schedule1 | Schedule2 | Schedule3}}}
Keyword (might consist of two
separate words)
Associated Keyword to Select or
Parameter to Type
Description

Table of Contents

Other manuals for NETGEAR ProSAFE SRX5308

Related product manuals