Defining Rules

A ruleset is a group of rules based on one feature of a proxy. When you configure a proxy, you can see the rulesets for that proxy in the Categories list. The rulesets you see change when you change the proxy action on the Properties tab of a proxy configuration window.

A proxy can have more than one proxy action associated with it. For example, you can use one ruleset for packets sent to an e-mail server protected by the Firebox and a different ruleset to apply to e-mail messages being sent out through the Firebox to the Internet. You can use the existing proxy actions, or clone an existing proxy action to create a new proxy action.

A rule includes a type of content, pattern, or expression and the action the Firebox® does when a component of the packet's content matches a rule. Rules also include settings for when the Firebox sends alarms or if it sends events to the log file.

For most proxy features, the Firebox has a preinstalled ruleset. But you can edit the rules in a ruleset to change the action for the rules. You can also add your own rules.

The fields you use for these rule definitions look the same for each category of ruleset. The simple view is shown below. You can also select Change View to see the advanced view.

Use the advanced view to improve the matching function of a proxy. In advanced view, you can configure exact match and Perl-compatible regular expressions. In simple view, you can configure wildcard pattern matching with simple regular expressions.



 

Return to Top

Copyright © 1996 - 2005 WatchGuard Technologies, Inc. All rights reserved.
Legal Notice/Terms of Use