199
Defining your security environment
Controlling full application inspection of traffic
Configure the security gateway to send and receive files
To configure the security gateway to send and receive files, you must do the following:
■
Ensure that the FTP proxy is enabled
■
Create an FTP service group
■
Create an allow rule for FTP
To ensure that the FTP proxy is enabled
1
In the SGMI, in the left pane, under Assets, click
Proxies
.
2
In the right pane, in the Proxies table, click
FTP
, and then click
Properties
.
3
In the Proxy Properties dialog box, on the General tab, to enable FTP, check Enable.
4
In the Caption text box, type a brief description of the FTP proxy.
5
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
6
Click
OK
.
To create an FTP service group
1
In the SGMI, in the left pane, under Assets, click
Protocols
.
2
In the right pane, on the Service Groups tab, click
New
.
3
In the Service Group Properties dialog box, on the General tab, in the Service Group name text box,
type a name for this service group.
4
On the Protocols tab, to display a list of available protocols to add to this service group, click
Add
.
5
In the Select protocols dialog box, click
ftp
.
6
Click
OK
.
7
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
8
In the Service Group Properties dialog box, click
OK
.
To create an allow rule for FTP
1
In the SGMI, in the left pane, under Policy, click
Firewall
.
2
In the right pane, on the Rules tab, click
New
.
3
In the Rule Properties dialog box, on the General tab, do the following:
Rule name
Type a name for this rule.
Caption
Type a brief description of the rule.
Action
Click
allow
.
Arriving through
Select the connection point through which traffic enters the security gateway.
Source
Select the defined network entity from which FTP traffic originates. This can be a
host network entity representing a specific machine from which the packets
originate, or subnet network entity representing your internal network.
Destination
Select the defined network entity to which FTP traffic is destined. This can be a host
network entity representing a specific machine or a subnet network entity
representing your internal network.
Leaving through
Select the connection point through which traffic leaves the security gateway.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...