Creating tunnel zones

Create a tunnel zone tag to represent certain types of plaintext, passthrough tunnels that you explicitly tag for special analysis.

A tunnel zone represents certain types of plaintext, passthrough tunnels that you explicitly tag for special analysis. A tunnel zone is not an interface object, even though you can use it as an interface constraint in access control rules, as explained in Using tunnel zones to apply access control at the tunnel level.

You can create zones in the object manager or when editing a tunnel rule.

Procedure


Step 1

Choose Objects.

Step 2

Choose Tunnel Zone from the list of object types.

Step 3

Click Add Tunnel Zone.

You can also edit an existing tunnel or delete a tunnel zone that is not being used in a tunnel rule.

Step 4

Enter a Name and, optionally, a Description.

Step 5

Click Save.


What to do next

  • Assign the tunnel zone to plaintext, passthrough tunnels as part of a tunnel rule. See Configure tunnel rules.

  • Use the tunnel zone as source interface criteria in an access control rule.