Managing the Access Policy
Quantum Spark 1500, 1600 and 1800 Appliance Series R80.20.40 Locally Managed Administration Guide | 159
Firewall Policy
Select one of these options to set the default Access Policy:
n
Strict
Blocks all traffic, in all directions, by default. In this mode, your policy can only be defined through the
Servers page and by manually defining access policy rules in the Access Policy > Firewall Policy
page.
n
Standard
l
Allows outgoing traffic to the Internet on configured services. You can click the services link to
configure all or only specified services that are allowed.
l
Allows traffic between internal networks and trusted wireless networks (in applicable devices).
l
Blocks incoming unencrypted traffic from the Internet (traffic from outside your organization to
it).
The Standard policy option is the default level and is recommended for most cases. Keep it
unless you have a specified need for a higher or lower security level.
n
Off
Allows all traffic. When the firewall is deactivated, your network is not secured. Manually defined rules
are not applied.
Note - When the blade is managed by Cloud Services, a lock icon shows. You cannot toggle between the on
and off states. If you change other policy settings, the change is temporary. Any changes made locally are
overridden in the next synchronization between the gateway and Cloud Services.
To set specified outgoing services in a standard Firewall policy:
1. When the Access Policy control level is set to Standard, click allservices.
2. Select Block all outgoing services except the following.
3. Select which services to allow.
4. To allow all services, select Allow all outgoing services.
5. Click Apply.