275
Controlling traffic at the security gateway
Understanding and using rules
■
“Adding authentication to rules”
■
“Using content security checks with rules”
■
“Using advanced service parameters for nonstandard services”
Enforcing time-based access restrictions
You can restrict when trusted users can gain access to your corporate resources. For example, you may
have an administrator available only during normal working hours, and want to limit connections to
that time period.
Prerequisites
Complete the following task before beginning the procedure:
■
To enforce time-based access restrictions
1
In the SGMI, in the left pane, under Policy, click
Firewall
.
2
In the right pane, on the Rules tab, highlight the rule to which you want to apply a time restriction,
and then click
Properties
.
3
In the Rule Properties dialog box, on the General tab, in the Time range drop-down list, select the
time range period or time range group that applies to the rule.
Optionally, use the New or Properties button to create a new time range period or time range group,
or to edit a selected entry.
4
Click
OK
.
5
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
Applying alert thresholds to rules
For some rules, you may want to generate alert level log messages when specific levels of traffic occur.
You can do this by applying alert thresholds to the rule. Alert thresholds work according to the number
of connections or connection attempts made over a given period of time.
You can then configure notification methods to be used when alert level messages occur. Notifications
alert administrators by email, pager, or SNMP message when events requiring attention occur. Alerts
can also cause an application to be run or blacklist traffic for a specified amount of time.
If you expect a rule to experience a high level of activity, for example rules using HTTP or SMTP, you
may not want to enable alert thresholds.
Prerequisites
Complete the following task before beginning the procedure:
■
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...