MBR L13
–
User’s
Guide
56
3.7.1.10
Advanced Filtering
Advanced filtering is designed to allow comprehensive control over the firewall's behavior. You can define specific
input and output rules, control the order of logically similar sets of rules, and make a distinction between rules that
apply to WAN and LAN devices.
To view the L13 advanced filtering options, click the
Advanced Filtering
link of the
Firewall
menu item under the
Services
tab. The
Advanced Filtering
screen appears.
Figure 78: Advanced Filtering
3.7.1.10.1
Input and Output Rule Sets
The first two sections of the
Advanced Filtering
screen
—
'Input Rule Sets'
and
‘Output Rule Sets',
are designed for
configuring inbound and outbound traffic respectively. Each section is comprised of subsets which can be grouped
into three main subjects:
Initial rules
–
rules defined here will be applied first, on all gateway devices
Network device rules
–
rules can be defined for each gateway device
Final rules
–
rules defined here will be applied last, on all gateway devices
The order of the rules
appearance represents both the order in which they were defined and the sequence by which
they will be applied. You may change this order after your rules are defined (without having to delete and then re-add
them), by using the
and
action icons.
Figure 79: Move Up and Move Down Action Icons
There are numerous rules that are automatically inserted by the firewall in order to provide improved security and
block harmful attacks.
To an advanced filtering rule:
1.
Choose the traffic direction and the device on which to set the rule.
2.
Click the appropriate
New Entry
link. The
Add Advanced Filter
screen appears.