Overriding Firewall Settings in Emergencies

To override all firewall settings in emergencies, select 15. Set Emergency Reaction from the Activation and Server Settings menu (STRFW > 1) as shown in Creating and Modifying Firewall Rules.

You can also open this window by pressing the F24 (Shift+F12) key on many screens, such as the Work with Server Security screen as shown in Setting Firewall Rules for Servers

The Firewall Emergency Override window appears:

 GSSRVMNU​             ​  Activation and Server Settings ​              ​  Firewall​ 
  ​
                                                                              ​ 
 S​                        ​ Firewall Emergency Override​                     ​     
  ​                                                                         ​     
  ​    Type options, press Enter.​                                           ​     
  ​                                                                         ​     
  ​     ​ Emergency override ALL Security setting . .​  ​ 0​  ​ 0=No change ​     ​     
  ​
     ​ Use this option for short periods only.    ​      ​ 1=Allow     ​     ​     
 G​     ​ Use Allow+Log to eliminate business impact ​      ​ 2=Allow+Log ​     ​     
 1​     ​ while you are reseting the rules.          ​      ​ 3=Reject    ​     ​     
 1​     ​ Use Reject+Log to react & trace an intrusion.​    ​ 4=Reject+Log​     ​     
  ​
                                                                         ​     
 U​    F3=Exit       F12=Cancel  ​                                           ​     
 2​                                                                         ​     
 2​                                                                         ​     
 2​                                                                               
                                                                                
                                                                                
 Selection or command                  ​                                         
 ===>​ 15                                                                        
                                                                               
 
 F3=Exit   F4=Prompt   F9=Retrieve   F12=Cancel                                ​ 
 F13=Information Assistant  F16=AS/400 main menu                                
                                                                               ​ 

The window has a single numeric field with five options:

  • 0: No change. Obey all rules as usual. Leave the field set to this unless there is an emergency.
  • 1: Allow. Allow all activity without logging.
  • 2: Allow+Log. Allow all activity and log it.
  • 3: Reject. Reject all activity without logging.
  • 4: Reject+Log. Reject all access requests and log them. Use this setting to react to and trace intrusions.