18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 6: Configuring Application Defenses<br />

Configuring connection properties<br />

204<br />

2 [Conditional] If you want to disallow fast path sessions, select the Disable<br />

Fast Path Sessions check box. (In most cases, fast path sessions enhance<br />

system performance.) Fast path sessions are allowed by default for proxies<br />

that support this option. See “Improving performance using Fast Path<br />

Sessions” on page 245 for more information.<br />

Note: This option is disabled by default for the IIOP Application Defense.<br />

3 [Web/Secure Web only] To enable a proxy to communicate with a nontransparent<br />

proxy, select the Send Traffic to Upstream Proxy option, and<br />

configure the following options:<br />

Note: If you allow transparent connections when using this option, the URL will<br />

be rewritten to contain an IP address rather than a hostname. If you allow<br />

transparent connections, you must first ensure that the upstream proxy server<br />

will accept an IP address.<br />

a In the IP Address field, specify the IP address for the upstream proxy.<br />

b In the Port field, specify the port that will be used (for HTTP, this will<br />

generally be port 80.)<br />

4 [Conditional] In the Allowed Connection Types area, determine the type <strong>of</strong><br />

traffic that will be allowed for this Application Defense (this field appears if<br />

you selected Web, Secure Web, Oracle [SQL]), or Telnet. The following<br />

options are available:<br />

Note: The default connection type for Oracle is Transparent. The default for<br />

Web, Secure Web, and Telnet is Both. If you are using Non-Transparent or<br />

Both, you will need to specify which destination ports will be allowed through<br />

the proxy. See “Configuring connection ports” on page 205.<br />

• Transparent—Select this option to allow transparent connections.<br />

• Non-Transparent—Select this option to allow non-transparent<br />

connections.<br />

• Both—Select this option to allow both transparent and non-transparent<br />

connections.<br />

5 [SNMP only] In the Max PDU field, specify the maximum protocol data unit<br />

(PDU) size that will be allowed. The default is 535.<br />

Valid values are 120–1450. You may want to increase this value depending<br />

on the type <strong>of</strong> device(s) you are using. However, keep in mind that some<br />

devices cannot handle a larger value.<br />

6 [IIOP only] In the Maximum message size (PDU) field, specify the maximum<br />

protocol data unit (PDU) message size that will be allowed. The default is<br />

72000.<br />

7 [SOCKS/Web/Secure Web only] To configure ports for a defense, click New<br />

and see “Configuring connection ports” on page 205.<br />

8 [Web only] To allow non-transparent, secure Web traffic through the HTTP<br />

proxy, select the Allow non-transparent secure web traffic through the web<br />

(HTTP) proxy check box.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!