18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Table 4-9. Proxy rules for the advanced rule group example<br />

Proxy rule<br />

Criteria<br />

Active rules for<br />

<strong>Administration</strong> Only<br />

Entry 1:<br />

eng_rule<br />

Default rules<br />

Entry 2:<br />

deny_other_ftp<br />

Proxy rule basics<br />

As mentioned earlier in this chapter, when you configure the<br />

<strong>Sidewinder</strong> <strong>G2</strong> you can select from one <strong>of</strong> two sets <strong>of</strong> default services<br />

that will be automatically placed in the active proxy rule group during<br />

initial configuration:<br />

<strong>Administration</strong> Services Only<br />

Standard Internet<br />

Entry 3:<br />

mkt_rule<br />

Entry 4:<br />

acct_rule<br />

Service Type Service Group Proxy Service Group Service Group<br />

Service EngServiceGroup FTP MktServiceGroup AcctServiceGroup<br />

Action Allow Deny Allow Allow<br />

Source Burb Internal Internal Internal Internal<br />

Source eng_net_group Any (leave blank) mkt_net_group acct_net_group<br />

Dest. Burb Any (leave blank) Internet Internet Internet<br />

Destination Any (leave blank) 192.55.12.3 Any (leave blank) Any (leave blank)<br />

User Group Any (leave blank) Any (leave blank) Any (leave blank) Any (leave blank)<br />

Authentication SafeWord SafeWord SafeWord<br />

Times/Days<br />

Application<br />

Defense group<br />

Web<br />

FTP<br />

Mail<br />

deny_all Web<br />

FTP<br />

Mail<br />

Web<br />

FTP<br />

Mail<br />

If you select <strong>Administration</strong> Services Only, a minimum list <strong>of</strong> rules<br />

(needed to maintain an operational <strong>Sidewinder</strong> <strong>G2</strong>) are placed in the<br />

default active rule group, called <strong>Administration</strong>. No traffic is allowed<br />

between any <strong>of</strong> the burbs. The minimum set includes the following<br />

rules:<br />

Note: If you select <strong>Administration</strong> Services Only, the default Standard Internet rules will<br />

still be placed in the Rules window for later use, if needed. However, they will not initially be<br />

included in the active proxy rule group.<br />

Understanding Policy Configuration 4-25

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!