Experience Center
Enabling the Firewall for Locations
The firewall can be enabled on a per-location basis.
Before Enabling the Firewall
- Ensure you have configured the following policy resources:
- Users, Groups, Departments, Locations, and Sub-locations for your firewall policies
- Time Intervals
- Network Applications. You can create network application groups as needed.
- Network Services. You can modify network services to edit services, add custom services, and create groups.
- Source and Destination IPv4 Address Groups
- IPv6 Configuration
- Ensure you have defined the necessary rules for each policy:
- If your organization uses non-standard ports for HTTP, HTTPS, DNS, FTP, RTSP, or PPTP traffic, ensure you have configured the service to use custom ports for these services.
Enabling the Firewall for a Location
To enable the firewall for a location:
- Go to Infrastructure > Internet & SaaS > Traffic Forwarding > Location Management > Location.
Click the Edit icon next to the location you want to enable.
- Select Enforce Firewall Control to enable the service's firewall controls.
Select Enable IPS Control to enable the service's IPS controls. (Available with the Advanced Firewall subscription).
- Click Save and activate the change.