TMS zl Management and Configuration Guide ST.1.0.090213
A-29
Threat Management Services zl Module Command-Line Reference
Global Configuration Context
destination zone • internal
• external
•dmz
• zone1
• zone2
• zone3
• zone4
• zone5
• zone6
• self
action • permit
• deny
• move <original position> to <new position>
The module checks the policies according to their priority.
Therefore, policies should be ordered from more precise
to more general, so that the module first checks packets
against the more precise policies, and then it checks more
general policies
protocol • any
• <0-255>
•tcp
• udp
• icmp < any | echo | timestamp >
•esp
•ah
• igmp
•gre
•l2tp
•ospf
•pim
•ip
service See “Services Available” on page A-60 for a table of the
default service objects.
source address • any
• host <IP address>
• source network
• ip-range <start IP address> <end IP address>
• address <address object>
Parameter Options