WatchGuard Firebox System 4.6 User Guide

WatchGuard Firebox System 4.6 User Guide WatchGuard Firebox System 4.6 User Guide

watchguard.com
from watchguard.com More from this publisher
13.07.2015 Views

Service precedence58

CHAPTER 9Controlling Web TrafficWebBlocker is a feature of the Firebox System that works in conjunction with theHTTP proxy to provide Web-site filtering capabilities. It enables you to exert finecontrol over the type of Web sites that users on your trusted network are allowed toview.For more information about WebBlocker and site blocking, see the WebBlockersection of the Network Security Handbook.How WebBlocker worksWebBlocker relies on a URL database built and maintained by SurfControl. TheWebBlocker database contains more than 65,000 IP addresses and 40,000 directories.The database is copied to the WatchGuard WebBlocker site at regular intervals. TheEvent Processor is automatically configured to download the most recent version ofthe database from the WatchGuard WebBlocker site over an authorized channel. Inturn, the Firebox regularly queries the Event Processor for changes and, whenappropriate, downloads a new version and generates a log entry to show the transfer.If the database is either corrupted, incompletely retrieved, or in any other wayincomplete, the Firebox does not load it. It repeats the attempt until it completes asuccessful transfer.When you restart your Firebox, all Web access is blocked for a brief period of time.Users might receive the error message “Database not loaded” until the Fireboxdownloads a database.Reverting to old WebBlocker databasesTo revert to a previous copy of the WebBlocker database, use the files namedWebblocker.old and Webblocker.old2 found in the installation directory. Rename thefiles Webblocker.db and Weblocker.db2, respectively. The Firebox automaticallyupdates to the latest WebBlocker database the next time it queries Event Processor.User Guide 59

CHAPTER 9Controlling Web TrafficWebBlocker is a feature of the <strong>Firebox</strong> <strong>System</strong> that works in conjunction with theHTTP proxy to provide Web-site filtering capabilities. It enables you to exert finecontrol over the type of Web sites that users on your trusted network are allowed toview.For more information about WebBlocker and site blocking, see the WebBlockersection of the Network Security Handbook.How WebBlocker worksWebBlocker relies on a URL database built and maintained by SurfControl. TheWebBlocker database contains more than 65,000 IP addresses and 40,000 directories.The database is copied to the <strong>WatchGuard</strong> WebBlocker site at regular intervals. TheEvent Processor is automatically configured to download the most recent version ofthe database from the <strong>WatchGuard</strong> WebBlocker site over an authorized channel. Inturn, the <strong>Firebox</strong> regularly queries the Event Processor for changes and, whenappropriate, downloads a new version and generates a log entry to show the transfer.If the database is either corrupted, incompletely retrieved, or in any other wayincomplete, the <strong>Firebox</strong> does not load it. It repeats the attempt until it completes asuccessful transfer.When you restart your <strong>Firebox</strong>, all Web access is blocked for a brief period of time.<strong>User</strong>s might receive the error message “Database not loaded” until the <strong>Firebox</strong>downloads a database.Reverting to old WebBlocker databasesTo revert to a previous copy of the WebBlocker database, use the files namedWebblocker.old and Webblocker.old2 found in the installation directory. Rename thefiles Webblocker.db and Weblocker.db2, respectively. The <strong>Firebox</strong> automaticallyupdates to the latest WebBlocker database the next time it queries Event Processor.<strong>User</strong> <strong>Guide</strong> 59

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!