SonicWALL SonicWALL UTM Appliance manual

Page 49

Step 6: Navigate to Application Firewall > Policies and change the action from reset/drop to the new custom action.

If you wish to display a block page instead, create a new action with HTTP Block Page. You can either insert text in the content or html markup to customize it further. Select the action under the Policy to use the new HTTP Block Page action.

Blocking All Websites except a Select Few with Application Firewall

Building a list of only allowed websites is often easier than creating a list of blocked sites for many organizations. A common request is to create a white list of allowed domains and deny everything else. Application Firewall gives you the ability to do this, as well as creating different lists and applying them to different groups/users. The process is virtually identical to the steps shown above with one slight exception. Under the Application Object select the box for Negative Matching. In the below example, only domains that match monster, jobs, facebook, and myspace would be allowed. All other domains will be denied.

49

Image 49
Contents Contents Page Integrating LDAP/Active Directory with Sonicwall UTM Configuring the CA on the Active Directory ServerImporting the CA Certificate onto the SonicWALL Configuring the SonicWALL Appliance for LdapPage Page Page Page Page Page Page Enable Radius to Ldap Relay Enables this feature Authentication Page Page Page Creating Firewall Rules with Ldap Groups/Users SonicOS Options That Leverage Groups/UsersPage Page Firewall Rules with Bandwidth Management & Logging Page Blocking Domains with Firewall Rules Blocking Websites Domain Names for Groups/UsersPage Page Navigate to Firewall Access Rules Create a rule to allow Http traffic for your allowed lists Do the same for Https Create the deny rules for Http and Https Firewall rules should now look like the below picture Blocking Https SSL Domains with SSL Control Configuring a SSL Blacklist and Whitelist Page Applying Different CFS Policies to Groups Page Creating Custom CFS Policies Navigate to the Policy tab and add a new CFS policy Page Page Page Http//$$fwinterface$$/$#SWLSTYLESCSS#$ Variables for Custom Block Page in SonicOSAdvanced Sample Code for SonicOS Basic Sample Code for SonicOSPage Page Sample Code for SonicOS 5.1 or Earlier Sample JavaScript Code for SonicOSApplying Application Firewall Polices to Groups/Users Page Page Page Page Tightening Control over the Browsing Behavior of Users Blocking IM Traffic Categorically Applying Granular IM Policies Global VPN Client GVC Applying VPN Access Policies to Groups/UsersPage SSL-VPN NetExtender Guest Services Wireless Guest Services