Configure the firewall
By default in a fresh installation, Vyatta NOS does not restrict traffic flow. That is, unless you configure a firewall rule to apply to an interface, the interface will transmit all traffic that it receives.
The firewall functionality provides packet filtering, which gives you the flexibility to restrict traffic to meet the needs of your environment.
General steps to configure a firewall on an interface are as follows:
Define a firewall rule set
How to define a firewall rule set and add a firewall rule to the set.
By default, when you create a firewall rule set and apply it to an interface, the system will block all traffic on that interface — that is, the system will block both in
and out
traffic on that interface.
- To allow inbound traffic, you must specify the sources of the inbound traffic.
- To allow outbound traffic, you must specify the sources of the outbound traffic.