TMS zl Management and Configuration Guide ST.1.0.090213

A-29
Threat Management Services zl Module Command-Line Reference
Global Configuration Context
destination zone internal
external
•dmz
zone1
zone2
zone3
zone4
zone5
zone6
self
action permit
deny
move <original position> to <new position>
The module checks the policies according to their priority.
Therefore, policies should be ordered from more precise
to more general, so that the module first checks packets
against the more precise policies, and then it checks more
general policies
protocol any
<0-255>
•tcp
udp
icmp < any | echo | timestamp >
•esp
•ah
igmp
•gre
•l2tp
•ospf
•pim
•ip
service See “Services Available” on page A-60 for a table of the
default service objects.
source address any
host <IP address>
source network
ip-range <start IP address> <end IP address>
address <address object>
Parameter Options