1.2.5.12. Test the New Firewall Rules

Once again you will generate traffic through the BIG-IP AFM and then view the AFM (firewall) logs.

In the Configuration Utility, open the Security > Event Logs > Network > Firewall page.

Access for port 80 on 10.30.0.50 was granted using the web_rule_list: allow_http rule.

image31

Access for port 80 on 10.40.0.50 was granted using the application_rule_list: allow_http rule.

image32

Ping to 10.30.0.50 was granted using the global rule.

image33

All other traffic was rejected by the rd_0_policy reject_10_20_0_0 reject rule

image34