01.01.2013 Views

Web Gateway 7.1.5 Product Guide - McAfee

Web Gateway 7.1.5 Product Guide - McAfee

Web Gateway 7.1.5 Product Guide - McAfee

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Rules and rule sets<br />

About rule sets 4<br />

Sample wizard rule set system<br />

When using the policy creation wizard to implement a rule set system, you might have made the<br />

following selections:<br />

Type of organization: commercial<br />

Location: Europe<br />

Level of strictness; limited (medium)<br />

The wizard then creates, for example, the following rule set system (nested rules sets are not shown):<br />

Table 4-2 Sample wizard rule set system (commercial – Europe – limited)<br />

Rule set Description<br />

Global Whitelist Lets whitelisted IP addresses, URLs, and responses with empty bodies skip all further<br />

filtering.<br />

Global Block Blocks IP addresses, authenticated users, and URLs entered in blocking lists.<br />

Media Type Filtering Controls media type filtering with nested rule sets for uploading and downloading media<br />

types.<br />

Content Filter Exempts users if entered in a whitelist. Blocks users if entered in a blocking list. Blocks URLs<br />

belonging to various categories.<br />

<strong>Gateway</strong> AntiMalware Controls virus and malware filtering.<br />

SSL Scanner Prepares SSL-secured web traffic for processing by other filtering functions with nested rule<br />

sets for certificate verification and inspection enabling.<br />

Default rule set system<br />

The default rule set system is implemented if you do not use the wizard.<br />

The following table shows the default rule set system (nested rule sets are not shown):<br />

Table 4-3 Default rule set system<br />

Rule set Description<br />

SSL Scanner Prepares SSL-secured web traffic for processing by other filtering functions with nested rule<br />

sets for certificate verification and inspection enabling.<br />

Global Whitelist Lets requests that are sent from clients with whitelisted IP address or are directed to<br />

websites with whitelisted URLs skip all further filtering.<br />

Common Rules Provides functions that support the filtering process, such as web caching, progress<br />

indication, and opening of archives.<br />

Authenticate and<br />

Authorize<br />

Content Filter for<br />

Unauthenticated User<br />

Content Filter for<br />

User Group “internet”<br />

Content Filter for<br />

User Group<br />

“internet_strict”<br />

Asks unauthenticated users to authenticate and blocks users who are not in an allowed user<br />

group with nested rule sets for both functions.<br />

Controls filtering of individual URLs, URL categories, and media types for unauthenticated<br />

users.<br />

Controls filtering of individual URLs, URL categories, and media types for users belonging<br />

to a particular user group.<br />

Controls filtering of individual URLs, URL categories, and media types for users belonging<br />

to a user group that has a stricter blocking level applied to it. This can be achieved, for<br />

example, by using block lists containing more or different entries compared to the lists used<br />

for other groups.<br />

<strong>Gateway</strong> Antimalware Controls virus and malware filtering using virus signatures and proactive methods.<br />

<strong>McAfee</strong> <strong>Web</strong> <strong>Gateway</strong> <strong>7.1.5</strong> <strong>Product</strong> <strong>Guide</strong> 93

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!