Basic Parameters
| Parameter | Description |
|---|---|
| Action | The action the firewall takes when traffic matches the rule. |
| Application | A comma-separated list of application names or identifiers the rule should match. |
| Category | A comma-separated list of URL category names or identifiers the rule should match. |
| Destination | A comma-separated list of the destination addresses the rule applies to. |
| Folder | The folder on which you want to perform this operation. |
| From | A comma-separated list of the source security zones the rule applies to. |
| Name | The name of the entry. |
| Position | The position of a security rule. |
| Service | A comma-separated list of the network services the rule applies to. |
| Source | A comma-separated list of the source addresses the rule applies to. |
| Source User | A comma-separated list of users or user groups the rule should apply to. |
| To | A comma-separated list of the destination security zones the rule applies to. |
Advanced Parameters
| Parameter | Description |
|---|---|
| Description | An explanation of the purpose and functionality of this resource. |
| Destination HIP | A comma-separated list of any Host Information Profile (HIP) objects required for the destination match. |
| Disabled | When checked, this resource will exist but won’t be active. |
| Log Setting | The name of a log forwarding profile to use for traffic matching this rule. |
| Negate Destination | When checked, the rule should apply to traffic not going to the specified destination. |
| Negate Source | When checked, the rule should apply to traffic not coming from the specified source. |
| Profile Setting | The profile settings for the resource. |
| Source HIP | A comma-separated list of any Host Information Profile (HIP) objects required for the source match. |
| Tags | A comma-separated list of any tags to associate with this rule for organization or dynamic address groups. |