VMware VSHIELD MANAGER 4.1.0 UPDATE 1 - API User Manual Page 27

  • Download
  • Add to my manuals
  • Print
  • Page
    / 162
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 26
VMware, Inc. 27
4
vShieldZonesprovidesfirewallprotectionaccesspolicyenforcement.Trafficdetailsincludesources,
destinations,directionofsessions,applications,andportsbeingused.Trafficdetailscanbeusedtocreate
firewallallowordenyrules.
Thischapterincludesthefollowingtopics:
“UsingZonesFirewall”onpage 27
“CreateaZonesFirewallRule”onpage 29
“CreateaLayer2/Layer3ZonesFirewallRule”onpage 30
“ValidatingActiveSessionsagainsttheCurrentZonesFirewallRules”onpage 31
“ReverttoaPreviousZonesFirewallConfiguration”onpage 31
“DeleteaZonesFirewallRule”onpage 32
Using Zones Firewall
ZonesFirewallisacentralized,hierarchicalfirewallforESXhosts.ZonesFirewallenablesyoutocreaterules
thatallowordenyaccesstoandfromyourvirtualmachines.EachinstalledvShieldZonesenforcestheApp
Zonesrules.
YoucanmanageZonesFirew allrulesatthedatacenter,cluster,andportgrouplevels
toprovideaconsistent
setofrulesacrossmultiplevShieldZonesinstancesunderthesecontainers.Asmembershipinthesecontainers
canchangedynamically,ZonesFirewallmaintainsthestateofexistingsessionswithoutrequiring
reconfigurationoffirewallrules.Inthisway,ZonesFirewalleffectivelyhasacontinuousfootprintoneachESX
host
underthemanagedcontainers.
WhencreatingZonesFirewallrules,youcreate5tuplefirewallrulesbasedonspecificsourceanddestinationIP
addresses.
Zones Firewall Management
4
NOTEYoucanupgradevShieldZonestovShieldAppbyobtainingavShieldApplicense.vShieldApp
enhancesvShieldZonesprotectionbyofferingFlowMonitoring,customcontainercreation(SecurityGroups),
andcontainerbasedaccesspolicycreationandenforcement.
YoudonothavetouninstallvShieldZonestoinstallvShieldApp.All
vShieldZonesinstancesbecomevShield
Appinstances,theZonesFirewallbecomesAppFirewall,andtheadditionalvShieldAppfeaturesareenabled.
Page view 26
1 2 ... 22 23 24 25 26 27 28 29 30 31 32 ... 161 162

Comments to this Manuals

No comments