NOTE: Creation of service definitions is necessary for granularity but not required for all types of NATand firewall
rules.
Figure 6.6 Services Tab
To create a service definition:
1. From the sidebar, click Firewall and NAT, then click the Services tab.
2. In the Service Name field, enter a name to be used for the service.
NOTE: Aservice name can be between 3-40 alphanumeric characters.
3. In the ServiceAddress field, enter a valid subnet IDfor the service in CIDRformat. For example, 192.168.10.0/24.
4. Enter the starting and ending ports for the IPprotocol.
NOTE: Valid entries are from 0-65,535.
5. Click Apply. The new service definition will be displayed in the user-defined service definition table.
To modify or delete a user-defined service definition:
1. From the sidebar, click Firewall - NAT, then click the Services tab.
2. In the User Defined Services table, check the box next to the service you want to modify or delete.
3. Make your changes and click Apply.
-or-
Click Delete to delete the service definition.
6.5.5 Policy
An administrator can control the flow of IPtraffic in, out and through the appliance with a NAT and/or firewallpolicy.
An administrator can create policies that will allow an external host or server to communicate directly with IPdevices
(hosts)that are securely connected to the private ports of the appliance. ANATor forward policy will allow traffic to bypass
Vertiv | Avocent® Universal Management Gateway Appliance Installer/User Guide | 77