Cisco Cisco Web Security Appliance S690 User Guide

Page of 478
 
9-12
AsyncOS 9.0.1 for Cisco Web Security Appliances User Guide
 
Chapter 9      Classify URLs for Policy Application
  Filtering Transactions Using URL Categories
Step 5
In the Uncategorized URLs section, choose the action to take for client requests to web sites that do not 
fall into a predefined or custom URL category. 
This setting also determines the default action for new and merged categories resulting from URL 
category set updates. 
Step 6
Submit and Commit Changes.
Configuring URL Filters for Data Security Policy Groups
You can configure URL filtering for user defined Data Security Policy groups and the Global Policy 
Group.
Step 1
Choose Web Security Manager > Cisco Data Security.
Step 2
Click the link in the policies table under the URL Categories column for the policy group you want to 
edit.
Step 3
(Optional) In the Custom URL Category Filtering section, you can add custom URL categories on which 
to take action in this policy:
a.
Click Select Custom Categories.
b.
Choose which custom URL categories to include in this policy and click Apply.
Choose which custom URL categories the URL filtering engine should compare the client request 
against. The URL filtering engine compares client requests against included custom URL 
categories, and ignores excluded custom URL categories. The URL filtering engine compares the 
URL in a client request to included custom URL categories before predefined URL categories. 
The custom URL categories included in the policy appear in the Custom URL Category Filtering 
section.
Step 4
In the Custom URL Category Filtering section, choose an action for each custom URL category. 
Action
Description
Use Global 
Setting
Uses the action for this category in the Global Policy Group. This is the default 
action for user defined policy groups.
Applies to user defined policy groups only.
When a custom URL category is excluded in the global Cisco Data Security Policy, 
then the default action for included custom URL categories in user defined Cisco 
Data Security Policies is Monitor instead of Use Global Settings. You cannot choose 
Use Global Settings when a custom URL category is excluded in the global Cisco 
Data Security Policy. 
Allow 
Always allows upload requests for web sites in this category. Applies to custom URL 
categories only.
Allowed requests bypass all further data security scanning and the request is 
evaluated against Access Policies.
Only use this setting for trusted web sites. You might want to use this setting for 
internal sites.