18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Proxy basics<br />

Important: Network attacks using “sniffer” programs to steal users’ accounts and<br />

passwords are becoming more frequent on the Internet. To prevent such intrusions,<br />

you should use a strong authentication method (such as those described in Chapter<br />

9) that prevent an attacker from gaining account information. However, attacks can<br />

still use sniffers to compromise your data. By encrypting your network transmissions<br />

and using proxy redirection, you can provide further defense against network attacks<br />

(Strong Cryptography is a premium feature).<br />

Configuring advanced proxy parameters on a per-rule<br />

basis using Application Defenses<br />

The Proxy window allows you to configure the basic proxy properties<br />

and enable them in the appropriate burbs. Proxy rules allow you to<br />

determine whether proxy access will be allowed or denied and under<br />

what conditions. By adding Application Defenses to your rules, you<br />

can specify advanced, application-specific proxy properties (such as<br />

MIME/anti-virus filtering, SSL decryption, and timeout properties) on a<br />

per-rule basis. For information on configuring Application Defenses<br />

and rules for proxies, see Chapter 6 and Chapter 7.<br />

Improving performance using Fast Path Sessions<br />

The <strong>Sidewinder</strong> <strong>G2</strong> supports a Fast Path Sessions option that improves<br />

system performance by lessening the load placed on the system<br />

kernel when passing proxy data through the <strong>Sidewinder</strong> <strong>G2</strong>.<br />

Performance is improved on the <strong>Sidewinder</strong> <strong>G2</strong> when the Fast Path<br />

Sessions option is enabled for protocols that use many small packets,<br />

such as Telnet.<br />

The Fast Path Session option is configured in the Application<br />

Defenses windows in the Connections area. Application Defenses can<br />

be configured in advance and added to rules later, or they can be<br />

created directly within a rule. For information on configuring Fast<br />

Path Session options, see “Configuring connection properties” on<br />

page 6-48.<br />

Configuring Proxies 8-3

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!