276
Controlling traffic at the security gateway
Understanding and using rules
To apply alert thresholds to rules
1
In the SGMI, in the left pane, under Policy, click
Firewall
.
2
In the right pane, on the Rules tab, highlight the rule to which you want to apply alert thresholds,
and then click
Properties
.
3
On the Alert Thresholds tab, to activate alert thresholds, check
Generate alert messages if
thresholds are reached.
4
Under Number of connections during a time interval, in each of the time period text boxes, use the
default thresholds or type the number of connections or connection attempts that are necessary to
generate an alert.
5
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
“Rule Properties—Alert Thresholds tab”
■
“Alerting using notifications”
Adding authentication to rules
To increase the security provided by a rule, you can use authentication to control which users are
granted access and how the security gateway determines and verifies the identity of those users. The
authentication process verifies the identity of a user requesting access by contacting an authentication
server, looking for a record that matches the user’s credentials, and then challenging the user to enter
the appropriate key phrase of response.
For example, you may want to identify a small group of people who require HTTP access. By enforcing
an authentication check on these types of services, only authorized individuals will have access.
Prerequisites
Complete the following tasks before beginning the procedure:
■
■
“Configuring the OOBA service”
To add authentication to rules
1
In the SGMI, in the left pane, under Policy, click
Firewall
.
2
In the right pane, on the Rules tab, select the rule to which you want to add authentication, and
then click
Properties
.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...