
417
Enabling remote access with clientless VPN
Using rules to allow or deny clientless VPN access
The following URLs do not match:
■
http://www.symantecexample.net
■
http://new.www.symantecexample.com
■
http://www.safe.com/companyinfo/techsupport.html
■
mail://www.symantecexample.com
Example 2
SimpleAllow2 is a rule for all non-secure Web resources on host www.symantecdomain.com that
contain .pdf. The URL must begin http://www.symantecdomain.com.
The following URL matches SimpleAllow2:
■
http://www.symantecdomain.com/partners.pdf
The following URLs do not match:
■
http://www.symantecdomain.com/companypdfs/techsupport.html
■
http://www.symantecdomain.com/product/product/pdf/SCVG.rft
■
http://www.symantecdomain.com
■
mail://www.symantecdomain.com/jsmith
Example 3
SimpleAllow3 is a rule for all file resources on the www.symantecexample.com server that are in a
share folder named sales and have a single preceding character. In this example, the URL must begin
with file://www.symantecexample.com.
The following URLs match SimpleAllow3:
■
file://www.symantecexample.com:1sales@/quartly_report.pdf
■
file://www.symantecexample.com:Xsales@/jsmith/status.doc
■
file://www.symantecexample.com:_sales@/projects/wave.html
The following URLs do not match:
■
http://www.symantecexample.com
■
file://www.symantecexample.com:share1@/sales/jdoe/status.doc
■
mail://www.symantecexample.com
Adding simple rules
Each simple rule can only define one resource protocol. You must define a simple rule for each
resource protocol. Clientless VPN supports the following resource protocols:
■
HTTP
■
HTTPS
■
HTTP/HTTPS
■
File
■
FTP
■
■
Telnet
■
TCP
■
UDP
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...