Interface rule conditions
An interface rule condition is a network traffic control that
-
controls traffic by its source and destination interfaces,
-
uses predefined interface objects called security zones or interface groups to build interface conditions, and
-
improves system performance by constraining rules to specific interfaces.
Interface rule condition characteristics
Interface objects segment your network by grouping interfaces across multiple devices to manage and classify traffic flow. For more information, refer to Interface.
QoS rules can be applied only on routed interfaces.
Tip | Constraining rules by interface is one of the best ways to improve system performance. If a rule excludes all of a device's interfaces, that rule does not affect that device's performance. |