D-Link DFL-1000 [57/168] Denying connections from the internet

D-Link DFL-1000 [57/168] Denying connections from the internet
DFL-1000 User Manual
5
7
Action
Select ACCEPT.
Authentication
Select Authentication and select a user group if you want users on the Internet to authenticate with
the firewall before accessing the server.
Web filter
Select Web filter if service is set to HTTP, SMTP, POP3, or IMAP to apply content filtering to the
network traffic allowed by this policy.
Select OK to save the policy.
Arrange the policy in the policy list to produce the results that you expect.
Arranging policies in a policy list is described in Configuring policy lists
.
Denying connections from the Internet
Policies that deny connections from the Internet can control access to policies that accept connections
from the Internet.
You can deny connections:
from specific Internet addresses,
to specific internal or DMZ addresses,
to specific services,
according to a one-time or recurring schedule.
Using a schedule to deny access
The following example procedure, to periodically deny access to a public web server to allow for regular
maintenance, is similar to any procedure to deny a connection that would otherwise be accepted by an
existing policy. In this example, the DFL-1000 NPG is running in NAT/Route mode.
To use a schedule to deny access:
Add a schedule for the time period during which you want to deny access.
See Schedules
.
Go to Firewall > Policy .
Select the policy list containing the policy to which you want to deny access.
Select Insert Policy before
to insert the new policy before the policy to block.
You must add the deny policy above the accept policy in the policy list. For more information, see
Policy matching in detail
and Configuring policy lists.
Configure the new policy to match the policy to block, with the following exceptions:
Set Schedule to the schedule that you added in step Add a schedule for the time period during which
you want to deny access..
Set Action to DENY.
Select OK to save the policy.
The policy is added to the policy list above the policy to which you want to deny access.
Denying connections to the Internet
Policies that deny connections to the Internet from the internal network restrict the full access to the
Internet granted by the default policy.
You can deny connections:

Содержание

Скачать