Network packet rule window
July 3, 2024
ID 202313
In this window, you can configure the network packet rule.
Network packet rule settings
Setting | Description |
---|---|
Rule name | The field for entering the name of the network packet rule. |
Action | In the drop-down list, you can select an action to be performed by the Firewall Management component when it detects network activity:
|
Protocol | In the drop-down list, you can select the type of data transfer protocol for which you want to monitor network activity:
|
Specify ICMP type | This check box lets you specify the ICMP type. The Firewall Management component monitors messages of the specified type sent by the host or gateway. If this check box is selected, the field for entering the ICMP type is displayed. This check box is displayed only if ICMP or ICMPv6 data transfer protocol is selected in the Protocol drop-down list. This check box is cleared by default. |
Specify ICMP code | This check box lets you specify the ICMP code. The Firewall Management component monitors messages of the type specified (in the field under the Specify ICMP type check box) and the code specified (in the field under the Specify ICMP code check box), sent by a host or gateway. If this check box is selected, the field for entering the ICMP code is displayed. This check box is displayed only if ICMP or ICMPv6 data transfer protocol is selected in the Protocol drop-down list. It is available only if the Specify ICMP type check box is selected. This check box is cleared by default. |
Direction | In this drop-down list, you can specify the direction of the monitored network activity:
|
Remote address | In this drop-down list, you can specify network addresses of the remote devices that can send and receive network packets:
|
Specify remote ports | This check box allows you to specify the port numbers of the remote devices between which the connection must be monitored. If this check box is selected, the field for entering port numbers is displayed. This check box is displayed only if TCP or UDP data transfer protocol is selected in the Protocol drop-down list. This check box is cleared by default. |
Local address | In this drop-down list, you can specify the network addresses of the devices with Kaspersky Endpoint Security installed that can send and receive network packets:
|
Specify local ports | This check box allows you to specify the port numbers of the local devices between which the connection must be monitored. If this check box is selected, the field for entering port numbers is displayed. This check box is displayed only if TCP or UDP data transfer protocol is selected in the Protocol drop-down list. This check box is cleared by default. |
Log events | This check box lets you specify whether the actions of the network rule are recorded in the report. If the check box is selected, the application writes the actions of the network rule to the report. If the check box is cleared, the application does not write the actions of the network rule to the report. This check box is cleared by default. |