18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 4: Understanding Policy Configuration<br />

Proxy rule basics<br />

120<br />

Default rules<br />

As mentioned earlier in this chapter, when you configure <strong>Sidewinder</strong> <strong>G2</strong> you<br />

can select from one <strong>of</strong> two sets <strong>of</strong> default services that will be automatically<br />

placed in the active proxy rule group during initial configuration. The following<br />

options are available and described in Table 18 on page 120:<br />

• Allow administrative services only: If you select this option, <strong>Sidewinder</strong><br />

<strong>G2</strong>’s active rule group will contain only rules necessary for administration.<br />

Other pre-configured rules appear on the Rules screen by default, but are<br />

not in the active proxy rule group and therefore do not pass traffic.<br />

• Allow administrative and basic outbound Internet services: If you select<br />

this option, <strong>Sidewinder</strong> <strong>G2</strong>’s active rule group will include rules for<br />

administration and a rule providing users access to the most commonly<br />

used Internet services.<br />

Table 18: Initial active policy<br />

Proxy rule<br />

name<br />

dnsp (names<br />

vary)<br />

Admin<br />

Console<br />

Login<br />

Console<br />

Internet<br />

Services<br />

Summary<br />

Allow DNS traffic to proxy between indicated burbs. Which<br />

rules are created depends on the location <strong>of</strong> the DNS resolver<br />

IP addresses (internal burb, external burb, assumed to be<br />

reach-by-default route) provided in the Network Information<br />

window.<br />

Allows administrators to connect to the <strong>Sidewinder</strong> <strong>G2</strong> using<br />

the Admin Console.<br />

Allows administrators to log in directly at the <strong>Sidewinder</strong> <strong>G2</strong>,<br />

using an attached keyboard and monitor.<br />

This rule is added if you select “Allow administrative services<br />

and basic outbound Internet services” on the policy window.<br />

The rule provides users access to the most commonly used<br />

Internet services using a pre-configured “Internet Services”<br />

service group. The Internet Services rule regulates access to<br />

the following proxies and servers:<br />

• FTP<br />

• HTTP<br />

• HTTPS<br />

• Ping<br />

• Real Media<br />

• RTSP<br />

• Telnet<br />

Deny All Denies all connections from any source burb to any destination<br />

burb.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!