Add a rule to a policy
-
Click Add rule.
The firewall creates a default rule at the top of the rule hierarchy that blocks all HTTP traffic for all users. The rule is off.
-
Specify users.
- In the new rule, move the pointer over the Users field, click the user (“Anybody”), and then click Add new item.
- Clear the Anybody check box.
- Select users.
-
Click Apply selected items.
-
Specify activities and content filters.
- Move the pointer over the Activities field, click the activity (All web traffic), and then click Add new item.
- In the Activities tab, clear the All web traffic check box.
- Select activities.
- Click Apply selected items.
- Click the Content filters tab and enable the and with content check box.
- Click Add new item and select filters.
- Click Apply selected items.
-
Specify an action to take when the firewall encounters HTTP traffic that
matches the selected criteria.
-
Move the pointer over the Action field and click
the action indicator.
- Select an option.
Option Description Allow HTTP Allow HTTP traffic that matches the selected criteria. Warn HTTP Display a warning message when encountering HTTP traffic that matches the selected criteria. Block HTTP Block HTTP traffic that matches the selected criteria. -
Move the pointer over the Action field and click
the action indicator.
- Optional
Specify an action to take when the firewall encounters HTTPS traffic that
matches the selected criteria.
Note Follow these steps only if you want to specify an action for HTTPS traffic that is different from the one you specified for HTTP.
-
Move the pointer to the right of the Action
field.
The firewall displays the HTTPS use action list.
- Select an option.
Option Description Use action Use the same action that is currently selected for HTTP traffic. If you specify a different HTTP action at a later time, the HTTPS action will also use that action. Allow HTTPS Allow HTTPS traffic that matches the selected criteria. Warn HTTPS Display a warning message when encountering HTTPS traffic that matches the selected criteria. Block HTTPS Block HTTPS traffic that matches the selected criteria. -
Move the pointer to the right of the Action
field.
- Optional Move the pointer over the Constraints field and select a schedule or create a new one.
- Optional
Click and drag the rule handle to position the rule in the hierarchy.
The firewall evaluates rules from highest to lowest. For example, if a rule that allows all traffic precedes a rule that blocks a specific type of traffic, the rule that allows all traffic is the effective rule.
-
Click the Status switch to turn
the rule on.
- Click Save.