6WINDGate™ WEBGate Configuration
admin
Logout
System
General setup
ARP and NDP
Update Firmware
Interfaces
Assign role
eth0_0
(lan)
eth1_0
(lan)
eth2_0
(lan)
Dynamic interfaces
Firewall
Rules
Services
DNS forwarder
Dynamic DNS
SNMP
IPv4 DHCP Relay
IPv4 DHCP Server
IPv6 DHCP Client
IPv6 DHCP Server
IPv6 Mobility
NAT & NAT-PT
PPP Server
PPPoE Server
L2TP Server
AAA
VPN
IPsec
Certificates
VPN Templates
Migration
Xin4
6to4
Xin6
DSTM
ISATAP
Routing
Static Routes
RIP
RIPng
OSPF
BGP
ISIS
PIM-SMv4
PIM-SMv6
Logs
Log Sessions
Log Services
Show Log Sessions
Status
System
Show Status
Interfaces
Show Route
DHCP leases
IPsec SA/SPD
Ping
Backup/Restore
Reboot system
Firewall: Edit rule
Rule index
Rule index (useful to move rules). Automatic if is not set
Family
ipv4
ipv6
Warning:
When ipv4 and ipv6 are selected (or none), you can't set source and destination IP addresses
Processing
input
output
forward
Input interface
not
(other)
any
eth0_0
eth1_0
eth2_0
Output interface
not
(other)
any
eth0_0
eth1_0
eth2_0
Protocol & options
Protocol
not
Use this option to invert the sense of the match.
 
(other)
tcp
udp
icmp
esp
ah
gre
Choose which protocol this rule should match.
TCP flags
not
Use this option to invert the sense of the match.
TCP MASK:
syn
ack
fin
psh
rst
urg
TCP FLAGS:
syn
ack
fin
psh
rst
urg
ICMP options
not
Use this option to invert the sense of the match.
redirect
destination-unreachable
communication-prohibited
port-unreachable
time-exceeded
ttl-zero-during-transit
ttl-zero-during-reassembly
parameter-problem
echo-request
echo-reply
router-solicitation
router-advertisement
icmp type
icmp code
Source
not
Use this option to invert the sense of the match.
Address:
Mask:
Source port(s)
not
Use this option to invert the sense of the match.
from:
to:
Specify the port or port range for the source of the packet for this rule.
Hint: you can leave the
'to'
field empty if you only want to filter a single port
Destination
not
Use this option to invert the sense of the match.
Address:
Mask:
Destination port(s)
not
Use this option to invert the sense of the match.
from:
to:
Specify the port or port range for the source of the packet for this rule.
Hint: you can leave the
'to'
field empty if you only want to filter a single port
Stateful
not
Use this option to invert the sense of the match.
new
established
related
invalid
Action
allow
reject
deny
log
Choose an action.
Log string:
Log level:
emergency
alert
critical
error
warning
notice
info
debug
Log amount:
6WINDGate™ WEBGate. All rights reserved. [
view license
]