Chapter 5 Managing Traffic
ZyWALL USG 20-2000 User’s Guide
113
5.6.2 Set Up a Firewall Rule
Create a firewall rule to allow the public to send HTTP traffic to IP address 1.1.1.1 in order to access
the HTTP server. If a domain name is registered for IP address 1.1.1.1, users can just go to the
domain name to access the web server.
Click
Configuration > Firewall
>
Add
. Set the
From
field as
WAN
and the
To
field as
DMZ
. Set
the
Destination
to the HTTP server’s DMZ IP address object (
DMZ_HTTP
).
DMZ_HTTP
is the
destination because the ZyWALL applies NAT to traffic before applying the firewall rule. Set the
Access
field to
allow
and the
Service
to
HTTP
, and click
OK
.