05.08.2013 Views

OfficeScan 10 Administrator's Guide - Online Help Home - Trend Micro

OfficeScan 10 Administrator's Guide - Online Help Home - Trend Micro

OfficeScan 10 Administrator's Guide - Online Help Home - Trend Micro

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Using the <strong>OfficeScan</strong> Firewall<br />

The following steps are necessary to successfully use the <strong>OfficeScan</strong> firewall:<br />

1. Create a policy. The policy allows you to select a security level that blocks or allows<br />

traffic on networked computers and enables firewall features.<br />

2. Add exceptions to the policy. Exceptions allow clients to deviate from a policy.<br />

With exceptions, you can specify clients, and allow or block certain types of traffic,<br />

despite the security level setting in the policy. For example, block all traffic for a set<br />

of clients in a policy, but create an exception that allows HTTP traffic so clients can<br />

access a Web server.<br />

3. Create and assign profiles to clients. A firewall profile includes a set of client<br />

attributes and is associated with a policy. When a client matches the attributes<br />

specified in the profile, the associated policy is triggered.<br />

Firewall Policies<br />

Firewall policies allow you to block or allow certain types of network traffic not<br />

specified in a policy exception. A policy also defines which firewall features get enabled<br />

or disabled. Assign a policy to one or multiple firewall profiles.<br />

<strong>OfficeScan</strong> comes with a set of default policies, which you can modify or delete.<br />

The default firewall policies are as follows:<br />

TABLE 7-40. Default firewall policies<br />

POLICY<br />

NAME<br />

SECURITY<br />

LEVEL<br />

CLIENT<br />

SETTINGS<br />

All access Low Enable<br />

firewall<br />

Cisco Trust<br />

Agent for<br />

Cisco NAC<br />

Low Enable<br />

firewall<br />

EXCEPTIONS<br />

RECOMMENDED<br />

USE<br />

None Use to allow<br />

clients<br />

unrestricted<br />

access to the<br />

network<br />

Allow incoming<br />

and outgoing<br />

UDP traffic<br />

through port<br />

21862<br />

Use when<br />

clients have a<br />

Cisco Trust<br />

Agent (CTA)<br />

installation<br />

7-5

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!