Cisco Cisco Web Security Appliance S660 Guida Utente

Pagina di 446
 
9-6
AsyncOS 8.5 for Cisco Web Security Appliances User Guide
 
Chapter 9      Create Policies to Control Internet Requests
  Policies
Routing
SOCKS
Step 2
Click Add Policy.
Step 3
Assign a name that is unique to the type of policy.
Step 4
(Optional) Enter a description.
Step 5
Considering the desired policy order, using the Insert Above field drop-down list, choose where in the 
policies table to place the policy.
Step 6
In the Identities and Users section, choose one or more Identities to which this policy will apply.
Note
HTTPS: If the Identity requires authentication, consider that authentication information may not be available 
when a user tries to connect to an HTTPS server.
Step 7
(Optional) Expand the Advanced section to apply this policy to transactions based on additional transaction 
characteristics.
Advanced Option
Description
Protocols
Select the protocols to which this policy will apply. “All others” means any 
protocol not listed above this option. If the associated identity applies to specific 
protocols, this policy applies to those same protocols...
Proxy Ports
Apply this policy only to traffic using specific ports to access the web proxy. Enter 
one or more port numbers in the Proxy Ports field. Separate multiple ports with 
commas. 
For explicit forward connections, this is the port configured in the browser. 
For transparent connections, this is the same as the destination port. 
Note
If the associated identity applies only to specific proxy ports, the web 
interface will not allow you to enter proxy ports here. 
Subnets
Apply this policy only to traffic on specific subnets.
Note
If the associated identity applies to specific subnets, you can further 
restrict the application of this policy to a subset of the addresses to which 
the identity applies. 
Limiting Access by 
Time of Day
Apply this policy only to traffic on specific subnets. 
URL Categories
Apply this policy only to traffic on specific subnets.
Note
If the associated identity applies to specific subnets, you can further 
restrict the application of this policy to a subset of the addresses to which 
the identity applies. 
Client Applications Apply this policy only to traffic on specific subnets.
Note
If the associated identity applies to specific subnets, you can further 
restrict the application of this policy to a subset of the addresses to which 
the identity applies.