Create Services and Service Groups
Use the Create Service page to create a service. You can create services based on protocols and ports used by an application. You can use protocols such as TCP, UDP, MS-RPC, SUN-RPC, ICMP, ICMPv6, and so on, to create services. Once you create a service, you can combine it with other services to form a service group. Service groups are useful when you want to apply the same policy to multiple services.
You can also create or modify service-based protocols from the Services page.
To configure a service or service group:
-
Select Shared Services > Objects >
Services.
The Services page appears.
-
Click the add icon (+) to create service or service group.
The Create Service page appears.
-
Complete the configuration of a service according to the guidelines provided in Table 1.
If you want to configure a service group, see Table 2.
-
Click OK to save the changes. If you want to discard your
changes, click Cancel instead.
A new service or service group with the configuration you provided is created. You can use this service or service group as an endpoint in firewall policies.
Table 1 provides guidelines on using the fields to create a service.
Table 1: Create Service Settings Field
Description
Name
Enter a unique name for the service. The name must begin with an alphanumeric character and can contain alphanumeric characters and some special characters (colons, hyphens, forward slashes, periods, and underscores); 63-character maximum.
Description
Enter a description for your service. The description can contain alphanumeric characters and special characters (excluding ampersand, lesser than (<) and greater than (>), and newline (\n)); 900-character maximum.
You should make this description as useful as possible for all administrators.
Type
Select Service or Service Group. If you select Service Group, then the page changes so you can select the services you want to include in your service group. See Table 1.
Protocols
Select the protocol you want to associate with the service. You can also create a new protocol, or edit existing protocols:
-
To create a new protocol, click on the add icon (+). See Create Protocols.
-
To edit an existing protocol, click on the edit icon (pencil symbol). See Edit and Delete Protocols.
Table 2 provides guidelines on using the fields to create a service group.
Table 2: Service Group Settings Field
Description
Name
Enter a unique name for the service group. The name must begin with an alphanumeric character and can contain alphanumeric characters and some special characters (colons, hyphens, forward slashes, periods, and underscores); 63-character maximum.
Description
Enter a description for your service group. The description can contain alphanumeric characters and special characters (excluding ampersand, lesser than (<) and greater than (>), and newline (\n)); 900-character maximum.
You should make this description as useful as possible for all administrators.
Type
Select Service or Service Group. If you select Service Group, then the screen changes so you can select the services you want to include in your service group.
Services
Select the service you want to include in the service group and click the greater-than icon (>) to move the selected service or services from the Available column to the Selected column. You can use the search field at the top of each column to search for listed services.
-