12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring the FTP ProxyMaximum file name lengthSets the maximum file name length for files to upload or download.Maximum command line lengthSets the maximum length for command lines used on FTP sites.3 For each setting, you can set or clear the Auto-block check box next to it. If someone tries toconnect to an FTP site and exceeds a limit whose Auto-block check box is selected, the computerthat sent the commands is added to the temporary Blocked Sites list.4 To create a log message for each transaction, select the Send a log message with summaryinformation for each transaction check box.Defining commands rules for FTPFTP has a number of commands to manage files. You can write rules to put limits on some FTP commands.Use the FTP-Server proxy action to put limits on commands that can be used on an FTP serverprotected by the Firebox. Use the FTP-Client proxy action to put limits on commands that users protectedby the Firebox can use when they connect to external FTP servers. The default configuration ofthe FTP-Client is to allow all FTP commands.1 From the Categories section, select Commands.2 Do the steps used to create rules. For more information, see “Defining Rules” on page 161.Setting download rules for FTPDownload rules control the file names, extensions, or URL paths that users can use FTP to download.Use the FTP-Server proxy action to control download rules for an FTP server protected by the Firebox.Use the FTP-Client proxy action to set download rules for users connecting to external FTP servers. Toadd download rulesets:1 From the Categories section, select Download.2 Do the steps used to create rules. For more information, see “Defining Rules” on page 161.Setting upload rules for FTPUpload rulesets control the file names, extensions, or URL paths that users can use FTP to upload. Usethe FTP-Server proxy action to control upload rules for an FTP server protected by the Firebox. Use theFTP-Client proxy action to set upload rules for users connecting to external FTP servers. The default configurationof the FTP-Client is to allow all files to be uploaded. To create upload rulesets:1 From the Categories section, select Upload.2 Do the steps used to create rules. For more information, see “Defining Rules” on page 161.Enabling intrusion prevention for FTPAlthough you can use the proxy definition screens to activate and configure IPS, it is easier to use theTasks menu in Policy Manager to do this. For more information on how to do this, or to use the IPSscreens in the proxy definition, see the chapter “Using Signature-Based Security Services.”<strong>User</strong> <strong>Guide</strong> 173

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!