Defining the Initial Firewall Policy

 


Procedure

Follow the steps below to create the firewall policy to apply to your new firewall when it is created:

 

Note:  You can only perform this procedure on an MFW service component with a status of Open.

 

Step

Action

From the Managed Firewall PRN screen, click the ID of the Open firewall for which you want to define network configuration.

 

Result:  The system takes you to the Modify Managed Firewall Details screen.

From the Functions section on the left-hand side of the screen, click Initial Setup.

 

Result:  The system takes you to the Initial Setup screen.

From the Form Name list at the bottom of the screen, click Initial Firewall Policy.

 

Result:  The system takes you to the Initial Firewall Policy screen.

From the first Address Type drop-down list, select whether the rule you are creating will apply to a single originating IP address, a range of originating IP addresses, or all originating IP addresses.

In the Source - Start field, type the first originating IP address to which the rule you are creating should apply.

In the Source - End field, type the last originating IP address to which the rule you are creating should apply.

From the first Address Type drop-down list, select whether the rule you are creating will apply to a single terminating IP address, a range of terminating IP addresses, or all terminating IP addresses.

In the Destination - Start field, type the first terminating IP address to which the rule you are creating should apply.

In the Destination - End field, type the last terminating IP address to which the rule you are creating should apply.

In the Service/Port field, type the kind of service to which the rule should apply, or the identifier of the firewall port to which the rule should apply.

From the Action drop-down list, select the action you want the firewall to take when traffic hits the firewall from the originating IP address(es) to the terminating IP address(es) via the service or port you entered.

Click btn_newadd.gif.

 

Result:  The system adds the rule you just defined to the Rules box.

Repeat Steps 4 through 12 for all the rules you want to create for the policy.

 

Note:  You can remove rules from the Rules box by highlighting the offending rule and clicking btn_newremove.gif.

Type any additional information you want to associate with the policy in the Comments box.

Click btn_newsubmit.gif.

 

Result:  The system attempts to save the firewall policy information and associate it with the firewall before returning you to the Initial Setup screen.  The Initial Firewall Policy option at the bottom of the screen should now have a status of Completed.