01.01.2013 Views

Web Gateway 7.1.5 Product Guide - McAfee

Web Gateway 7.1.5 Product Guide - McAfee

Web Gateway 7.1.5 Product Guide - McAfee

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

1<br />

Introduction<br />

Comprehensive web security for your network<br />

Main functions of the <strong>McAfee</strong> <strong>Web</strong> <strong>Gateway</strong> appliance<br />

Filtering web traffic is a complex process. The main functions of the appliance contribute to it in<br />

different ways:<br />

• Filtering web objects — Special anti-virus and anti-malware functions on the appliance scan and<br />

filter web traffic and block web objects when they are infected. Other functions filter requested URLs,<br />

using information from the Global Threat Intelligence system, or do media type and HTML filtering.<br />

They are supported by functions that do not filter themselves, but do such jobs as counting user<br />

requests or indicating the progress made in downloading web objects.<br />

• Filtering users — This is done by the authentication functions of the appliance, using information<br />

from internal and external databases and methods such as NTLM, LDAP, RADIUS, Kerberos, and<br />

others. In addition to filtering normal users, the appliance also gives you control over administrator<br />

rights and responsibilities.<br />

• Intercepting web traffic — This is a prerequisite for any filtering of web objects or users. It is<br />

achieved by the gateway functions of the appliance, using different network protocols, such as HTTP,<br />

HTTPS, FTP, Yahoo, ICQ, and Windows Live Messenger. As a gateway, the appliance can run in explicit<br />

proxy mode or in transparent bridge or router mode.<br />

• Monitoring the filtering process — The monitoring functions of the appliance provide a continuous<br />

overview of the filtering process. They include a dashboard, displaying information on alerts, web<br />

usage, filtering activities, and system behavior, as well as logging and tracing functions and options<br />

to forward data to an ePolicy Orchestrator or do event monitoring with an SNMP agent.<br />

Main administrator activities<br />

The following are the main activities you need to complete when administering the appliance:<br />

• Perform the initial setup — You can set up the appliance on a physical hardware platform or on a<br />

virtual machine. The setup procedure includes the initial configuration of system parameters, such as<br />

host name and IP address, implementing an initial system of filtering rules, and licensing.<br />

Two wizards are available in this phase: one for the initial configuration, another for the filtering<br />

rules.<br />

• Configure the gateway functions — After the initial setup, explicit proxy mode and the HTTP<br />

protocol are preconfigured on the appliance. You can modify this and also configure other network<br />

components that the appliance communicates with.<br />

• Modify filtering rules — The filtering rules are the building blocks of your web security policy. You<br />

can review the system of filtering rules that has been implemented during the initial setup and modify<br />

it. Authentication is not implemented by default.<br />

Working on the filtering rules includes maintaining the lists that these rules use and configuring<br />

the settings for rule actions and for the modules involved in the filtering processs.<br />

• Monitor the appliance — When you have configured the appliance according to your requirements,<br />

you can monitor it to see how it performs the filtering process. You can also monitor system functions,<br />

such as CPU and memory usage, number of active connections, and others.<br />

14 <strong>McAfee</strong> <strong>Web</strong> <strong>Gateway</strong> <strong>7.1.5</strong> <strong>Product</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!