TMS zl Management and Configuration Guide ST.1.1.100430

4-27
Firewall
Firewall Access Policies
In each zone where your users reside, create a new firewall access
policy that permits HTTPS access from that zone to Self and set the
maximum connections to 5 (See “Create Firewall Access Policies” on
page 4-29.) The maximum connection limit does not limit how many
authenticated user sessions are permitted; it limits how many
requests to the HTTP server can be made at one time.
This policy’s priority should be after (lower than) the default HTTPS
policy for that zone.
Orphaned Policies
With the module in routing mode (Layer 3), only the traffic that crosses TMS
VLAN boundaries can be filtered by the TMS zl Module. If you configure a
policy to affect traffic that originates in and is destined for the same TMS
VLAN, the policy will not take effect because the traffic is not routed through
the module.
Figure 4-12. An Orphaned Policy and a Valid Policy