Remediation Settings - Dell SMA 200 Administration Manual

Table of Contents

Advertisement

Find Geo IP Location for Logs — When this option is enabled, a column indication the location of the
source IP is added to the following screens: End Point Control > Log, Web Application Firewall > Log,
Geo IP & Botnet Filter > Log, and Log > Views.
Enable Packet Log (Debug mode) — Select this option to generate logs for allowed or denied packets.
This option is for debug purposes only. Enabling the Packet Log makes logs increase rapidly if the log
level is set to Debug.

Remediation Settings

Access to an SMA/SRA appliance from aggressive IP addresses are denied directly when Geo IP & Botnet Filter is
enabled. Remediation provides valid users an opportunity to process the access from the aggressive IP
addresses.
For web access, user are redirected to the CAPTCHA page, as shown in the following figure. A countdown timer
tells the time that remained for the user to complete remediation. The user must finish remediation within
limited time, otherwise user IP address is added to the block list and all access from the aggressive IP address is
blocked for a period of time.
If remediation is successful within the Verification Time, the user is directed to corresponding page that was
requested. A CAPTCHA session is then created to record the remediation status. During the Valid Duration, all
access from the IP address is allowed. After the Valid Duration, the CAPTCHA session goes to expired status. If
the user is still in login status, access is not interrupted, but after the user login session is expired the CAPTCHA
session is deleted and remediation is required again.
To enable Remediation and configure the settings:
1
Click Remediation Settings.
Dell SonicWALL Secure Mobile Access 8.5
Administration Guide
323

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sma 400Sra 1600Sra 4600Sma 500v

Table of Contents