Managing the Access Policy
R81.10.X Quantum Spark 1500, 1600, 1800, 1900, 2000 Appliances Locally Managed Administration Guide|211
Firewall Policy
Select one of these options to set the default Access Policy:
n
Strict
Blocks all traffic, in all directions, by default. In this mode, your policy can only be defined
through the Servers page and by manually defining access policy rules in the Access
Policy > Firewall Policy page.
n
Standard
l
Allows outgoing traffic to the Internet on configured services. You can click the
services link to configure all or only specified services that are allowed.
l
Allows traffic between internal networks and trusted wireless networks (in
applicable devices).
l
Blocks incoming unencrypted traffic from the Internet (traffic from outside your
organization to it).
The Standard policy option is the default level and is recommended for most cases.
Keep it unless you have a specified need for a higher or lower security level.
n
Off
Allows all traffic. When the firewall is deactivated, your network is not secured. Manually
defined rules are not applied.
Note - When the blade is managed by Cloud Services, a lock icon shows. You cannot
toggle between the on and off states. If you change other policy settings, the change
is temporary. Any changes made locally are overridden in the next synchronization
between the gateway and Cloud Services.
To set specified outgoing services in a standard Firewall policy:
1. When the Access Policy control level is set to Standard, click allservices.
2. Select Block all outgoing services except the following.
3. Select which services to allow.
4. To allow all services, select Allow all outgoing services.
5. Click Apply