D-Link NetDefendOS User Manual page 258

Network security firewall
Hide thumbs Also See for NetDefendOS:
Table of Contents

Advertisement

Click OK to close the dialog
5.
Click OK
Finally, set the source network address object of lan_to_wan_policy so it has the same
authentication group name as the application rule.
1.
Go to: Objects > Address Book > Add > IP4 Address
2.
Select lan_to_wan_policy
3.
In User Auth Groups enter rogue_users
4.
Click OK
Note that enabling No defined credentials in lan_to_wan_policy would also allow application
control to function.
Note: BitTorrent should include uTP
As seen in the above example, when application control is configured to target
BitTorrent, the two signatures bittorrent and utp should both be selected.
The Strict HTTP Setting
Many protocols that application control examines are built on top of the HTTP protocol. In some
cases where HTTP itself is being blocked by application control, a protocol built on HTTP may be
erroneously blocked as well. To try to resolve this problem, the Strict HTTP setting can be
disabled for the relevant Application Rule Set object. This will force application control to evaluate
the entire protocol structure before making a decision on the protocol type.
Changing the Maximum Unclassified Packets
The NetDefendOS application control subsystem processes a connection's data flow until it
decides if a connection is unclassifiable or not. The maximum amount of data processed to make
this decision is specified in NetDefendOS as both a number of packets and a number of bytes. By
default, these two values are:
Maximum Unclassifiable Packets: 5
Maximum Unclassifiable Bytes: 7500
When either of these values is reached, the unclassifiable decision is made. If the administrator
needs to increase the maximum amount of data processed because some protocols are being
incorrectly flagged as unclassifiable, then the values can be changed in one of two ways:
They can be changed globally in the NetDefendOS Advanced Settings.
The current global settings can be overridden for all rules in a rule set by selecting the Use
Custom Limits option for an Application Rule Set object.
258
Chapter 3: Fundamentals

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents