How To Configure Web Control Default Action Per-Entity - Allied Telesis AR Series Technical Manual

Feature overview and configuration guide advanced network protection
Hide thumbs Also See for AR Series:
Table of Contents

Advertisement

Configuring Web Control

How to Configure Web Control Default Action Per-entity

The default action to take on uncategorized websites and categorized websites that do not hit any
user-defined Web Control filter rules is to deny access to the website.
However, if there are multiple firewall entities configured in the device (such as multiple firewall
zones), then you may wish to configure different default actions for each individual entity for any
URLs that do not match filter rules.
A new reserved keyword any has been added to the parameter <category> in the rule command
from version 5.4.6-2.x onwards. This reserved Web Control keyword overrides the default Web
Control action for the specific entity that it is associated with. Rules containing this reserved
keyword can be applied to all types of firewall entities, including zone, network and host entities.
This new reserved keyword allows you to configure multiple firewall entities, with each entity having
its own unique default action to apply to uncategorized URLs.
Figure 7: Web Control per entity
Example 2
Basic configuration to create a rule using the category keyword any:
awplus#configure terminal
awplus(config)#web-control
awplus(config-web-control)#rule deny badsites from private
awplus(config-web-control)#rule permit any from private
Rules are processed in order. In this example above the access to URLs associated with the named
category badsites being accessed from the named firewall entity private will be blocked via the
deny rule. Access to all other URLs originating from that specific firewall entity will be allowed via
the subsequent permit any rule.
However, access to URLs from any other entity will not match the rules above, and so will be
blocked via the Web Control default action.
C613-22104-00 REV B
X
X
bad sites
blocked
other sites
permitted
Internet
ernet
H o s
t
H o s
t
X X
X
all URLs
blocked
How to Configure Web Control Default Action Per-entity
Advanced Network Protection
H o s
t
H o s
t
|
Page 40

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ar3050sAr4050s

Table of Contents