12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring Policy PropertiesSetting access rules, sources, and destinationsYou use the Policy tab to configure access rules for a given policy.The Policy tab shows:• If traffic that uses this policy is allowed or denied.• Who uses this policy to start a connection with the users, hosts, and networks reachable throughthe Firebox®.• The destinations for the traffic for this policy.On the From list, you add the computers and networks that can send (or cannot send) network trafficwith this policy. On the To list, you add computers and networks to which the Firebox routes traffic if itmatches the policy specifications. For example, you could configure a ping packet filter to allow pingtraffic from all computers on the external network to one web server on your optional network. Formore information on the aliases that appear as options the From and To list, see “Working with Aliases”on page 73.You can use these settings to configure how traffic is handled:AllowedThe Firebox allows traffic that uses this policy if it obeys the rules you set in the policy.DeniedThe Firebox denies all traffic that matches this policy. You can configure it to record a logmessage when a computer tries to use this policy. It can also automatically add a computer ornetwork that tries to start a connection with this policy to the Blocked Sites list (configured onthe Properties tab).Denied (send reset)The Firebox denies all traffic that matches this policy. It can also automatically add a computeror network that tries to start a connection with this policy to the Blocked Sites list (configuredon the Properties tab). The Firebox also sends a reset (RST) packet to tell the client that thesession is refused and closed.1 From the Policy tab, configure if connections are Allowed, Denied, or Denied (send reset).<strong>User</strong> <strong>Guide</strong> 151

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!