HP VPN Firewall Appliances Access Control Configuration Guide
75
• At the CLI, ACLs are matched in the order that they are displayed in the output of the display this
command in interzone instance view.
For information about ACLs, see "Configuring ACLs."
Configuring the interzone policy rules in the Web
interface
Configuring an interzone policy rule
Before configuring an interzone policy rule, complete the following tasks:
• Create security zones to which you will apply an interzone policy (see "Configuring security
zones").
• Configure IP address resources and MAC address resources (see "Configuring address resources").
• Configure service resources (see "Configuring service resources").
• Configure time ranges (see "Configuring time range resources").
• Configure content filtering templates (see Attack Protection Configuration Guide).
Complete the following tasks to configure interzone policy rules:
Ste
p
Remarks
1. Creating an interzone policy rule
Required.
By default, no interzone policy rules are present in the system.
2. Inserting an interzone policy rule
Optional.
3. Replicating an interzone policy rule
Optional.
4. Changing the priority of a rule
Optional.
5. Querying policies by IP address
Optional.
Query interzone policies by source or destination IP address.
Interzone policy groups do not support query by IP address.
Creating an interzone policy rule
1. From the navigation tree, select Firewall > Security Policy > Interzone Policy to enter the interzone
policy rule list page.