Create and Manage Services and Service Groups
Use the Create Service page to create a service. You can create services based on protocols and ports used by an application. You can use protocols such as TCP, UDP, MS-RPC, SUN-RPC, ICMP, ICMPv6, and so on, to create services. Once you create a service, you can combine it with other services to form a service group. Service groups are useful when you want to apply the same policy to multiple services.
You can also create or modify service-based protocols from the Services page.
Create Services and Service Groups
-
Select Shared Services > Objects
> Services.
The Services page appears.
-
Click the plus icon (
) to create service or service group.
The Create Service page appears.
-
Complete the configuration of a service or service group according to the following
guidelines:
Table 1: Create Service Settings Field
Description
Name
Enter a unique name for the service. The name must begin with an alphanumeric character and can contain alphanumeric characters and some special characters (colons, hyphens, forward slashes, periods, and underscores); 63-character maximum.
Description
Enter a description for your service. The description can contain alphanumeric characters and special characters (excluding ampersand, lesser than (<) and greater than (>), and newline (\n)); 900-character maximum.
You should make this description as useful as possible for all administrators.
Type
Select Service or Service Group. If you select Service Group, then the page changes so you can select the services you want to include in your service group.
Protocols
Select the protocol you want to associate with the service. You can also create a new protocol, or edit existing protocols:
-
To create a new protocol, click the plus icon (
). See Create and Manage Protocols. -
To edit an existing protocol, click the pencil icon (
).
Table 2: Service Group Settings Field
Description
Name
Enter a unique name for the service group. The name must begin with an alphanumeric character and can contain alphanumeric characters and some special characters (colons, hyphens, forward slashes, periods, and underscores); 63-character maximum.
Description
Enter a description for your service group. The description can contain alphanumeric characters and special characters (excluding ampersand, lesser than (<) and greater than (>), and newline (\n)); 900-character maximum.
You should make this description as useful as possible for all administrators.
Type
Select Service or Service Group. If you select Service Group, then the screen changes so you can select the services you want to include in your service group.
Services
Select the service you want to include in the service group and click the greater-than icon (>) to move the selected service or services from the Available column to the Selected column. You can use the search field at the top of each column to search for listed services.
-
-
Click OK to save the changes. If you want to discard your
changes, click Cancel instead.
A new service or service group with the configuration you provided is created. You can use this service or service group as an endpoint in firewall policies.
Manage Services and Service Groups
You cannot edit or delete predefined services, however, you can clone predefined services. You cannot delete services or service groups that are in use.
-
Edit—Select the service or service group, and then click the pencil icon (
). You cannot modify the service or service group Name or the Object Type.
-
Clone—Select the service or service group, and then click More > Clone.
-
Delete—Select the service or service group, and then click the trash can icon (
).