Chapter 14 Firewall
ZyWALL (ZLD) CLI Reference Guide
113
action <allow|deny|reject> Sets the action the ZyWALL takes when
packets match this rule.
[no] activate Enables a firewall rule. The
no command
disables the firewall rule.
[no] description description Sets a descriptive name (up to 60 printable
ASCII characters) for a firewall rule. The
no
command removes the descriptive name from
the rule.
[no] destinationip address_object Sets the destination IP address. The no
command resets the destination IP
address(es) to the default (any). any means
all IP addresses.
exit Quits the firewall sub-command mode.
[no] from zone_object Sets the zone on which the packets are
received. The
no command removes the zone
on which the packets are received and resets
it to the default (any). any means all
interfaces or VPN tunnels.
[no] log [alert] Sets the ZyWALL to create a log (and
optionally an alert) when packets match this
rule. The
no command sets the ZyWALL not
to create a log or alert when packets match
this rule.
[no] schedule schedule_object Sets the schedule that the rule uses. The no
command removes the schedule settings from
the rule.
[no] service service_name Sets the service to which the rule applies. The
no command resets the service settings to
the default (
any). any means all services.
[no] sourceip address_object Sets the source IP address(es). The no
command resets the source IP address(es) to
the default (any). any means all IP
addresses.
[no] sourceport {tcp|udp} {eq <1..65535>|range
<1..65535> <1..65535>}
Sets the source port for a firewall rule. The no
command removes the source port from the
rule.
[no] to {zone_object|ZyWALL} Sets the zone to which the packets are sent.
The
no command removes the zone to which
the packets are sent and resets it to the
default (
any). any means all interfaces or
VPN tunnels.
[no] user user_name Sets a user-aware firewall rule. The rule is
activated only when the specified user logs
into the system. The
no command resets the
user name to the default (
any). any means
all users.
firewall zone_object {zone_object|ZyWALL}
rule_number
Enters the firewall sub-command mode to set
a direction specific through-ZyWALL rule or
to-ZyWALL rule.
firewall zone_object {zone_object|ZyWALL} append Enters the firewall sub-command mode to add
a direction specific through-ZyWALL rule or
to-ZyWALL rule to the end of the global rule
list.
Table 59 Command Summary: Firewall (continued)
COMMAND DESCRIPTION