406
14.7.2-A
Policy
URL filter policiy
The URL filter tests each client request, whether it is acceptable or must be denied,
by successively evaluating the rules configured on this screen. If a requests fulfills all
preconditions of a rule (time, source IP, user) the requested URL is looked up in the
URL filter list the rule references. In case of a hit, access is either granted or denied
with a message as specified by the rule. No further rules will be evaluated. If however
there's no match, evaluation continues with the next rule.
If there's no hit at all, access will be granted.
Each rule consists of the following parameters:
Active
You can switch a rule on and off.
Period
A rule may be enabled only for certain periods of time. Configure periods in menu
"Definitions > Periods". A rule can be valid either within or outside the selected
period.
Source IP/network
Select an IP object or enter an IP or network with corresponding netmask to
limit the rule to specific source addresses. Leave empty if the rule should apply
regardless of the client IP. A "*" is displayed in the table in this case.
Group
A rule can be limited to certain users by selecting a group, provided that proxy
authentication is enabled. Users and groups are configured in menu "System >
User administration". Select "*" and the rule will apply to any user and also to
unauthenticated requests.
Policy
This setting determines whether a request is accepted or denied if the rule
matches.
Filter list
The requested URL is looked up in the selected URL filter list. Configure the lists in
menu "Definitions > URL filter lists". The ruleset is easier to understand if you use
descriptive names for the filter lists. Select "*" if the rule should apply to any URL.