WatchGuard Firebox System 4.6 User Guide

WatchGuard Firebox System 4.6 User Guide WatchGuard Firebox System 4.6 User Guide

watchguard.com
from watchguard.com More from this publisher
13.07.2015 Views

Blocking sites temporarily with service settingsRemoving a blocked portFrom the Blocked Ports dialog box, click a port number in the Blocked Ports list.Click Remove.Logging and notification for blocked portsFrom the Blocked Ports dialog box:1 Click Logging.The Logging and Notification dialog box appears.2 In the Category list, click Blocked Ports.3 Modify the logging and notification parameters according to your security policypreferences.For detailed instructions, see “Customizing logging and notification by service or option” onpage 76.Blocking sites temporarily with service settingsUse service properties to automatically and temporarily block sites when incomingtraffic attempts to use a denied service. You can use this feature to individually log,block, and monitor sites that attempt access to restricted ports on your network.Configuring a service to temporarily block sitesConfigure the service to automatically block sites that attempt to connect using adenied service. From Policy Manager:1 Double-click the service icon in the Services Arena.The Properties dialog box appears.2 Use the Incoming Service Connections Are drop list to select Enabled andDenied.3 Enable the Auto-Block Sites that Attempt to Connect Via checkbox.To change the auto-block duration, see “Changing the auto-block duration” on page 44.Viewing the Blocked Sites listUse Firebox Monitors to view sites that are automatically blocked according to aservice’s property configuration. From the Control Center:1 On the QuickGuide, click the Firebox Monitors icon.2 Click the Blocked Site List tab. (You might need to use the arrows to access thistab.)The Blocked Sites list appears.46

CHAPTER 8Configuring ServicesThe Services Arena of Policy Manager displays an icon for each configured service. Aservice represents a particular type of proxy or packet-filtering connection such asFTP, SMTP, or proxied HTTP. A symbol next to the service indicates whether theservice is configured for outgoing traffic, incoming traffic, or both. Services with nosymbol are not active.The Firebox System includes many well-known service types. You can also addunique or custom services. This feature accommodates new TCP/IP services as theyare developed.Adding an existing serviceAdd an existing, well-known service using the Services dialog box. From PolicyManager:1 On the toolbar, click the Add Services icon (it appears as a plus sign (+)).You can also select Edit => Add Service.2 Click to select a service from the list of available services.You can expand the tree to display all available services. When you click a service, the serviceicon appears in the dialog box, on the right side. Also, a Details box displays basic informationabout the service. For more information about individual services, see the “Types of Services”Appendix in the Reference Guide.3 Click Add.4 In the Comments text box, enter comments or a description of this version of theservice, to assist with identification.Comments appear under the Properties tab in the Comments field of the Properties dialog box.5 Click OK.The service’s Properties dialog box appears. For more information, see “Defining serviceproperties” on page 49.6 Click OK to close the Properties dialog box.User Guide 47

CHAPTER 8Configuring ServicesThe Services Arena of Policy Manager displays an icon for each configured service. Aservice represents a particular type of proxy or packet-filtering connection such asFTP, SMTP, or proxied HTTP. A symbol next to the service indicates whether theservice is configured for outgoing traffic, incoming traffic, or both. Services with nosymbol are not active.The <strong>Firebox</strong> <strong>System</strong> includes many well-known service types. You can also addunique or custom services. This feature accommodates new TCP/IP services as theyare developed.Adding an existing serviceAdd an existing, well-known service using the Services dialog box. From PolicyManager:1 On the toolbar, click the Add Services icon (it appears as a plus sign (+)).You can also select Edit => Add Service.2 Click to select a service from the list of available services.You can expand the tree to display all available services. When you click a service, the serviceicon appears in the dialog box, on the right side. Also, a Details box displays basic informationabout the service. For more information about individual services, see the “Types of Services”Appendix in the Reference <strong>Guide</strong>.3 Click Add.4 In the Comments text box, enter comments or a description of this version of theservice, to assist with identification.Comments appear under the Properties tab in the Comments field of the Properties dialog box.5 Click OK.The service’s Properties dialog box appears. For more information, see “Defining serviceproperties” on page 49.6 Click OK to close the Properties dialog box.<strong>User</strong> <strong>Guide</strong> 47

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!