Policy Configuration : Overview of Interfaces

Configuring Address Objects
SonicOS Enhanced supports Address Objects, which can be a host, network, MAC or IP address range. An Address Object Group is a group of Address Objects or other Address Object Groups. After defined, you can quickly establish NAT Policies, VPN Security Associations (SAs), firewall rules, and DHCP settings between Address Objects and Address Object Groups without individual configuration.
All SonicWALL appliances come with a group of pre-defined default network objects. These include subnets for each interface, interface IP addresses for each interface, management IP addresses, and more.
For appliances running SonicOS Enhanced, GMS supports paginated navigation and sorting by column header on the Address Objects screen. In either of the tables, you can click a column header to use for sorting. An arrow is displayed to the right of the selected column header. You can click the arrow to reverse the sorting order of the entries in the table.
IPv6 Address Objects and Address Object Groups can be viewed and configured on the Network > Address Objects page. The configuration of IPv6 Address Objects is nearly identical to the of IPv4 Address Objects.
You can complete the following tasks from the Address Object page:
Creating an Address Object Group
To create an Address Object Group, complete the following steps:
1
Expand the Network tree and click Address Objects. The Address Objects page displays.
2
Scroll down and click Add New Group.
3
4
5
Creating an Address Object
The Network > Address Objects page allows you to create address objects. You can create various kinds of address objects, including Host, Range, and Network. For a SonicWALL appliance running SonicOS Enhanced 3.5 or 4.0(or higher), you can create Fully Qualified Domain Name (FQDN) or MAC dynamic address objects. The FQDN and MAC address objects are available in the Address Objects pull-down lists in a number of other configuration screens, including Zones, SonicPoints, and Access Rules. These dynamic address objects are resolved to an IP address when used, either by the ARP cache or the DNS server of the SonicWALL.
To create an address object, complete the following steps:
1
Scroll to the bottom of the Address Objects page and click Add New Address Object.
 
2
3
4
To specify an individual IP address, select Host from the Type pull-down menu and enter the IP address.
To specify an IP address range, select Range from the Type pull-down menu and enter the starting and ending IP addresses.
To specify a network, select Network from the Type pull-down menu and enter the IP address and subnet mask.
To specify a MAC address, select MAC from the Type pull-down menu and enter the MAC address.
To specify a FQDN, select FQDN from the Type pull-down menu and enter the host name.
5
6
Modifying a Network Address Group or Object
To modify a network address group or object, complete the following steps:
1
Go to the Network > Address Object page.
2
Click the Edit icon () next to the selected address group or object.
3
Deleting a Network Address Group or Object
GMS now enables you to delete a single address group or object more conveniently as well as select multiple objects at a time.
To delete network address group objects, complete the following steps:
1
Go to the Network > Address Object page.
2
Click on the Trash can icon of the selected address group or object.
3