Creating A New Application Control Black/White List; Configuring An Application Control Black/White List - Fortinet FortiGate Series Administration Manual

Hide thumbs Also See for FortiGate Series:
Table of Contents

Advertisement

Application Control

Creating a new application control black/white list

Configuring an application control black/white list

FortiGate Version 4.0 MR1 Administration Guide
01-410-89802-20090903
http://docs.fortinet.com/
Feedback
To create a new application control black/white list, go to UTM > Application Control >
Black/White List and select Create New. Enter a name and optionally, a comment of
description. Select OK. Since a new application control black/white list is blank, the list edit
window appears. For information on creating application control black/white list entries,
see
"Configuring an application control black/white list" on page
Figure 373: The create a new application control black/white list dialog window
Name
Comments
To configure an application control black/white list, go to UTM > Application Control >
Control Black/white List and select the Edit icon of the list you want to configure.
The FortiGate unit examines network traffic for the application entries in the listed order,
one at a time, from top to bottom. Whenever a match is detected, the action specified in
the matching rule is applied to the traffic and further checks for application entry matches
are stopped. Because of this, you can use both actions to create a complex rule with fewer
entries.
For example, if your organization has standardized on AIM for instant messaging, you can
allow AIM and block all other IM clients with just two entries. First, create an entry in which
AIM is the specified application. Set the action to Pass. Then create an entry in which the
Category is im, the Application is all, and the action is Block. Since the entries are
checked from top to bottom, AIM traffic will trigger the first rule, and be passed. All other
detected IM traffic will trigger the second rule, and the FortiGate unit will block it.
Figure 374: Editing an application control black/white list
Creating a new application control black/white list
Enter the name of the application control black/white list.
Optionally, enter a comment or description.
605.
605

Advertisement

Table of Contents
loading

Table of Contents