Chapter 6 - Security Configuration
Confidential and Proprietary Information of ZTE CORPORATION 87
Destination Port Start
Start port no. of the destination address
Destination Port End
End port no. of the destination address
Interface In
Ingress interface of the source address
Interface Out
Egress interface of the destination address
For example, we can configure a policy that prohibits FTP access by
using the host IP address of 192.168.1.2 on langroup1 as the source
and the IP address of 192.168.2.13 on langroup2 as the destination.
Then, set Source IP Address
as 192.168.1.2 and Destination IP
Address
as 192.168.2.13, select TCP for Protocol, fill in 21 for
both the start port and end port, select langroup1 for Interface In
and langroup2 for Interface Out,
name this rule, select the Enable
IP Filter
option, and then click the Add button.
Setting URL and WEB Filter
Click the Web Filter link on the left part of the WEB page to enter
the Web Filter page, which consists of the Filtering Rule and
Filtering Policy parts used to set rule (validation condition) and
policy (filter condition) respectively and filter HTTP request for the
Web server by any client. At most 100 rule/policy entries can be
configured.