Cisco Cisco Web Security Appliance S160 User Guide

Page of 455
 
9-5
AsyncOS 8.7 for Cisco Web Security Appliances User Guide
 
Chapter 9      Classify URLs for Policy Application
  Managing Updates to the Set of URL Categories
Understanding the Impacts of URL Category Set Updates 
URL category set updates can have the following impacts on existing Access Policies, Decryption 
Policies, and Cisco Data Security policies, and on Identities: 
Effects of URL Category Set Changes on Policy Group Membership 
This section applies to all policy types with membership that can be defined by URL category, and to 
Identities. When policy group membership is defined by URL category, changes to the category set may 
have the following effects: 
If the sole criterion for membership is a deleted category, the policy or identity is disabled. 
If membership in any policy is defined by a URL category that changes, and if this causes ACL list 
changes, the web proxy will restart. 
Effects of URL Category Set Updates on Filtering Actions in Policies 
URL category set updates can change policy behavior in the following ways: 
Change 
Effect on Policies and Identities
A new category can be 
added
For each policy, the default action for newly-added categories is the action specified for 
Uncategorized URLs for that policy. 
A category can be 
deleted 
The action associated with the deleted category is deleted. 
If the policy depended exclusively on the deleted category, the policy is disabled. 
If a policy depends on an identity that depended exclusively on a deleted category, the policy will 
be disabled. 
A category can be 
renamed 
No change to the behavior of the existing policy. 
A category can split
A single category can become multiple new categories. Both new categories have the action 
associated with the original category.