Working with the Firewall Access Policy
R81.10.X Quantum Spark 1500, 1600, 1800, 1900, 2000 Appliances Locally Managed Administration Guide|217
l
External VPN sites - Configure default access from/to VPN > Site to Site Blade
Control page.
l
Remote Access VPN users - Configure default access from VPN > Remote
Access Blade Control page.
l
Wireless networks - Configure default access for each wireless network from the
Access tab in each wireless network's edit window in the Device > Wireless
Network page.
l
DMZ network - Configure default access from the DMZ object's edit window in the
Device > Local Network page.
Note - DMZ is not supported in 1530 / 1550 appliances.
n
Traffic to defined server objects as configured in each server's edit window in the
Access Policy > Firewall Servers page.
This page lets you add manual rules as exceptions to the default policy. In Strict mode,
the default policy blocks everything and you configure access only through manual rules.
Within each section there are these sections:
n
Manual Rules - Rules that you manually create.
n
Auto Generated Rules - Rules that the system determines based on the initial Firewall
Policy mode (Strict or Standard) as explained above. These rules are also influenced by
other elements in the system. For example, when you add a server, a corresponding rule
is added to the Incoming, internal and VPN traffic section.