224
Defining your security environment
Controlling full application inspection of traffic
3
In the Proxy Properties dialog box, on the General tab, to enable the RCMD proxy, check
Enable
.
4
In the Caption text box, type a brief description of the RCMD proxy.
5
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
6
Click
OK
.
To create an RCMD service group
1
In the SGMI, in the left pane, under Assets, click
Protocols
.
2
In the right pane, on the Service Groups tab, click
New
.
3
In the Service Group Properties dialog box, on the General tab, in the Service Group name text box,
type a name for this service group.
4
On the Protocols tab, to display a list of available protocols to add to this service group, click
Add
.
5
In the Select protocols dialog box, click
exec
.
6
Click
Apply
.
7
In the Select protocols dialog box, click
login
.
8
Click
Apply
.
9
In the Select protocols dialog box, click
shell
.
10
Click
OK
.
11
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
12
In the Service Group Properties dialog box, click
OK
.
To create an allow rule for RCMD
1
In the SGMI, in the left pane, under Policy, click
Firewall
.
2
In the right pane, on the Rules tab, click
New
.
3
In the Rule Properties dialog box, on the General tab, do the following:
4
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
5
Click
OK
.
Rule name
Type a name for this rule.
Caption
Type a brief description of the rule.
Action
Click
allow
.
Arriving through
Select the connection point through which traffic enters the security gateway.
Source
Select the defined network entity from which RCMD traffic originates. This can be a
host network entity representing a specific machine from which the packets originate,
or subnet network entity representing your internal network.
Destination
Select the defined network entity to which RCMD traffic is destined. This can be a host
network entity representing a specific machine or a subnet network entity
representing your internal network.
Leaving through
Select the connection point through which traffic leaves the security gateway.
Service group
Select the service group containing the exec, login, and shell protocols.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...