R3166-R3206-HP High-End Firewalls Access Control Configuration Guide-6PW101
49
• indicates that the ACL is accelerated. You can click the Stop Accelerating link
to disable ACL acceleration.
• indicates that the ACL has been modified after it was configured with ACL
acceleration. You can click the Start Accelerating link to enable ACL acceleration again, making
changes to the ACL take effect.
Return to Interzone policy configuration task list.
Displaying packet statistics of an interzone policy
Select Firewall > Security Policy > Policy Matching Statistics from the navigation tree to enter the page as
shown in Figure 45. S
elect the source and target zone, and then click Search. The page displays the
results matching the search conditions. Click Reset in the Operation column to clear the packets statistics
of the related interzone policy and at this time the system starts to perform statistics again.
Figure 45 Statistics of an interzone policy
Table 23 Items of the interzone policy statistics
Item Descri
p
tion
Permitted Packets
Number of packets that match the interzone policy and are therefore
forwarded during the statistics time
Denied Packets
Number of packets that match the interzone policy and are therefore
dropped during the statistics time
Start Time Start time of the statistics.
End Time End time of the statistics.
Return to Interzone policy configuration task list.
Interzone policy configuration example
Network requirements
• As shown in Figure 46, the corporate network belongs to zone Trust, while the external network
belongs to zone Untrust.
• Configure an interzone policy, allowing host Public to access the external network at any time and
denying all the other hosts’ access to the external network during working hours (from 8:00 to
18:00).