A Firewall Policy consists of settings that govern the network traffic permitted on your endpoints. After reviewing your firewall rules and assigning them to Rule Groups, create a Firewall Policy to apply your Rule Groups to your endpoints based on their OneView policy.
TIP - Review the default firewall rules or create a new one before creating a Firewall Policy. For a firewall policy to work on an endpoint, a firewall rule must be added to a rule group, which is then assigned to a firewall policy. For more information, see Create rules for Firewall Management in OneView.
Create firewall policy
- On the left navigation menu, go to Manage > Firewall Management.
- Select the Firewall Policies tab.
- In the top-right, click the Create Firewall Policy
button.
- On the General screen, fill out the following fields and click Next:
- Name: A name for the Firewall Policy.
- Description: A description of the Firewall Policy.
- Site: Select which OneView site this Firewall Policy applies.
- Policies: Select which OneView policies this Firewall Policy applies.
- On the Traffic Settings screen, select which traffic to allow or block and click Next:
- Traffic type
- Inbound Traffic: Data entering the network from the outside, such as receiving an email.
- Outbound Traffic: Data leaving the network from endpoints, such as sending an email.
- Network Profile
- Domain: Networks typically managed by the organization's IT team and are considered secure.
- Private: Networks that are trusted but not part of a domain, such as home networks.
- Public: Networks in public places such as airports, coffee shops, or other unknown and trusted networks.
- Block rule
- Allow: Allow the network traffic.
- Block: Block the network traffic, based on defined parameters such as IP addresses, ports, or applications.
- Block all: Block all network traffic, regardless of any allow rules in place.
- Traffic type
- On the Rule Groups screen:
- Select which Rule Groups to apply to the Firewall Policy. Only rules within rule groups can be applied to firewall policies.
- Toggle on Preserve local rules for Windows Store applications to prevent the Windows Firewall Management plugin from overriding any current local firewall rules on your endpoints for applications installed through the Windows Store.
Note: Firewall rules for applications installed through the Windows Store cannot be created through OneView. - Click Next.
- Review the settings and click Save > Yes, Enable.
Manage firewall policies
The following columns are available on the Firewall Policies tab:
-
Actions: Perform actions on the firewall policies.
- Clone: Begin creating another Firewall Policy using the same settings of the selected policy.
- Delete: Remove the selected Firewall Policy.
- Disable/Enable: Quickly disable or enable the Firewall policy without needing to delete and recreate it.
- Edit: Modify the selected Firewall Policy.
- Create: Date the Firewall Policy was created.
- Description: Description of the Firewall Policy.
- Enabled: Toggle on or off to enable or disable the Firewall Policy.
- Last updated: Date the Firewall Policy was last updated.
- Name: Name of the Firewall Policy.
- Policies: Number of OneView policies the Firewall Policy is applied to.
- Rule groups: Number of Rule Groups applied to the Firewall Policy.
- Updated by: The OneView user who last updated the Firewall Policy.
Click Add / Remove Columns to choose which columns to display.
Filter and sort data
Use the following features to filter and sort data on the Firewall Policies tab:
-
Filter results: Next to a column header, click the filter icon
to narrow the results. When clicking on the filter icon, the filter list at the top of the screen shows which filters are applied. Click on a filtered item to remove it, or Reset Filters
to remove them all.
-
Column pinning and auto-sizing: Next to a column header, click the hamburger menu button
to display a checkbox list of different sub-filters you can apply. Click the hamburger menu button
to pin or auto size for the selected column.
- Right-click menu: In the table, click and drag to select and highlight a section of the table. Right-click on your selected information to copy the cells and information.
Return to OneView Firewall Management guide.