Dell SMA 200 Administration Manual page 300

Table of Contents

Advertisement

To fix a misconfigured rule chain, complete the following tasks:
1
Point your browser to
If you try to reach the welcome page by simply using the URL
https://<SMA IP>/cgi-bin/welcome
explicitly go to
https://<SMA
your SMA/SRA appliance.
2
Log in as admin.
3
Navigate to the Web Application Firewall > Rules page.
4
Edit or delete the bad rules.
5
Click Accept.
Configuring Rules in a Rule Chain
You can add, edit, delete and clone rules. A rule is a condition that is checked against inbound or outbound
HTTP(S) traffic. Each rule chain can have one or more rules configured, and must have at least one rule before
it can be used.
Figure 48
Figure 48. Add Rule Page
Rules allow the administrator to employ both a positive security model and a negative security model. In a
positive security model, policies are written only to allow known traffic and block everything else.
A rule has several components:
Variables – These are HTTP protocol entities that are scanned by Web Application Firewall to help
identify legitimate or illegitimate traffic. Multiple variables can be matched against the configured value
in the Value field. The '+' and '-' buttons allow you to add variables from the Variables drop-down list
or delete them from the list of selected variables. You can combine multiple variables as required to
match the specified value. If multiple variables are configured, then the rule is matched if any one of
the configured variables matches the target value. See
about variables.
Operators – These are arithmetic and string operators. The Not check box is an inversion operator used
to match any value except the configured condition. See
information about the operators.
Value – This entity can be a number, literal string, or a regular expression that is compared with the
scanned target. It is compared with the value of the configured variable(s) according to the specified
operator.
https://<SMA
IP>/cgi-bin/welcome.
might not work. To repair misconfigured rules, you need to
IP>/cgi-bin/welcome, where <SMA IP> is the host name or IP address of
shows the Add Rule page.
https://<SMA
IP>/, the usual redirect to
About Variables
on page
About Operators
on page
Dell SonicWALL Secure Mobile Access 8.5
Administration Guide
301
for more information
303
for more
300

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sma 400Sra 1600Sra 4600Sma 500v

Table of Contents