
SANGFOR IAM v2.1 User Manual
116
<Move Up>, <Move Down>: Click the button to move up or move down the corresponding
selected service(s) respectively.
[Default Action]: Select [Allow] or [Deny] to configure the default action (of the current access
control policy) for the service control rules that are not in the above rule list. This item functions
in association with the service(s) configured above.
[If several policies are associated, adopt the default action of the next policy and continue
matching downwards]: If multiple access control policies are associated by a user or user group,
uncheck this item and the [Default Action] of the current policy will be adopted after the data
packets complete matching its rules; or check this item and the data packets will continue to match
the service rules of the access control policies followed.
Having completed configuring this page, you have to click the <OK> button to save the settings.
7.1.2.1.3.
Proxy Control
[Proxy Control]: Check this item to activate the rules configured under it. The configuration page
is as shown below:
Check [Disallow users to use transparent proxy of the device], or [Disallow users to use external
HTTP proxy], or [Disallow users to use external Socks4 and Socks5 proxies] or [Disallow other
protocols at standard HTTP and SSL protocol ports].
[Disallow other protocols at standard HTTP and SSL protocol ports]: Select this item to prevent
some applications from using HTTP port (TCP 80) and SSL port (TCP 443) to transmit their data,
and thus disallow them to shy away from the control of the IAM gateway device.