279
Controlling traffic at the security gateway
Understanding and using rules
12
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For information, see the following:
■
“Rule Properties—Antivirus tab”
■
“Rule Properties—Antispam tab”
■
“Rule Properties—Content Filtering tab”
■
“Rule Properties—Miscellaneous tab”
■
“Adding antivirus protection to a rule”
■
“Adding antispam protection to a rule”
■
“Adding content filtering protection to a rule”
Using advanced service parameters for nonstandard services
The Advanced Services tab lets you enter special parameters for services that are not included as part
of the standard services.
For example, most configuration options for the HTTP protocol and proxy are made available through
the SGMI. You can use the HTTP Proxy Properties dialog box to configure options such as HTTP
timeout parameters and additional HTTP connection ports. When HTTP is included in a service group,
you can use the HTTP Parameters dialog box to specify ports for HTTP over SSL and an external Web
proxy. However, there are additional HTTP configurations, such as preventing the security gateway
from being used as a proxy, that you perform by entering a command on the Advanced Service tab.
The syntax must be correct: contact Symantec Technical Support for the exact syntax required for the
special rule service you are creating. Some examples are shown in the following procedure.
To add an advanced service parameter to a rule, you must first create a service group for the protocol
to which the parameter applies, and select it as the service group for the rule.
Prerequisites
Complete the following tasks before beginning this procedure:
■
■
To use advanced service parameters for nonstandard services
1
In the SGMI, in the left pane, under Policy, click
Firewall
.
2
In the right pane, on the Rules tab, highlight the rule to which you want to add an advanced service
parameter, and then click
Properties
.
3
On the Advanced Services tab, in the Parameter text box, type the syntax that enables the
advanced service, and then click
Add
.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...