User guide

Chapter 5: Using the Web Interface
73
Changes made to firewall rules take effect immediately. Any unauthorized
IP activities cease instantly.
Note: The purpose of disabling the firewall by default is to prevent users
from accidentally locking themselves out of the device.
Enabling the Firewall
The firewall rules, if any, take effect only after the firewall is enabled.
To enable the Dominion PX firewall:
1. Choose Device Settings > Security > IP Access Control. The
Configure IP Access Control Settings dialog appears.
2. Select the Enable IP Access Control checkbox. This enables the
firewall.
3. Click OK to save the changes.
Changing the Default Policy
After enabling the firewall, the default policy is to accept traffic from all IP
addresses. This means only IP addresses discarded by a specific rule will
NOT be permitted to access Dominion PX.
You can change the default policy to Drop or Reject, in which case traffic
from all IP addresses is discarded except the IP addresses accepted by a
specific rule.
To change the default policy:
1. Choose Device Settings > Security > IP Access Control. The
Configure IP Access Control Settings dialog appears.
2. Ensure the Enable IP Access Control checkbox is selected.
3. The default policy is shown in the Default Policy field. To change it,
select a different policy from the drop-down list.
Accept: Accepts traffic from all IP addresses.
Drop: Discards traffic from all IP addresses, without sending any
failure notification to the source host.
Reject: Discards traffic from all IP addresses, and an ICMP
message is sent to the source host for failure notification.
4. Click OK to save the changes. The new default policy is applied.