Abstract

This chapter focuses on the basics of policy creation. The policies in this chapter are looked at as a primary tool of access control. When creating a policy on a NetScreen firewall, a minimum of five components is a must. The chapter describes NetScreen Policies and takes a look at the main ideas of policies on a NetScreen firewall. The chapter discusses the three types of polices and how and where they take effect are looked at. All three policies are very similar, but they are classified based upon the combination of zones in the policy. Address objects represent hosts or subnets of Internet protocol (IP) addresses. Service objects can be a strange concept. Many competitive firewall products create services as a single protocol. On a NetScreen firewall, a service object can contain up to eight protocols. This allows taking an entire suite of protocols and making them into one logical object. Policy creation is common task for an administrator of a NetScreen firewall. This chapter also describes the two methods of policy creation ware—the WebUI and the CLI, describing the merits of each.

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call