13.07.2015 Views

TRITON - Web Security Help, Version 7.7 - Websense

TRITON - Web Security Help, Version 7.7 - Websense

TRITON - Web Security Help, Version 7.7 - Websense

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Refine Filtering PoliciesCreating a custom protocol<strong>TRITON</strong> - <strong>Web</strong> <strong>Security</strong> <strong>Help</strong> | <strong>Web</strong> <strong>Security</strong> Solutions | <strong>Version</strong> <strong>7.7</strong>.xRelated topics: Working with protocols, page 272 Filtering protocols, page 273 Editing custom protocols, page 274 Adding to a <strong>Web</strong>sense-defined protocol, page 278Use the Filter Components > Protocols > Add Protocol page to define a new,custom protocol.1. Enter a Name for the protocol.The name cannot include any of the following characters:* < > { } ~ ! $ % & @ # . " | \ & + = ? / ; : ,A custom protocol can be assigned the same name as a <strong>Web</strong>sense-definedprotocol, in order to extend the number of IP addresses or ports associated withthe original protocol. See Adding to a <strong>Web</strong>sense-defined protocol, page 278, formore information.2. Expand the Add protocol to this group drop-down list, and then select a protocolgroup. The new protocol appears in this group in all protocol lists and filters.3. Define a unique Protocol Identifier (set of ports, IP addresses, and transportmethods) for this group. You can add additional identifiers later, from the EditProtocols page.Follow these guidelines for creating protocol identifiers:• At least one criterion (port, IP address or transport type) must be unique foreach protocol definition.• If you select All Ports or All external IP addresses, that criterion overlapswith any other ports or IP addresses entered in other protocol definitions.• Port ranges or IP address ranges are not considered unique if they overlap. Forexample, the port range 80-6000 overlaps with the range 4000-9000.FNoteUse caution when defining a protocol on port 80 or 8080.Network Agent listens for Internet requests over theseports. (In <strong>Web</strong>sense <strong>Web</strong> <strong>Security</strong> Gateway deployments,you can configure Network Agent to ignore these ports.)Since custom protocols take precedence over <strong>Web</strong>senseprotocols, if you define a custom protocol using port 80,all other protocols that use port 80 are filtered and loggedlike the custom protocol.<strong>TRITON</strong> - <strong>Web</strong> <strong>Security</strong> <strong>Help</strong> 277

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!