R3166-R3206-HP High-End Firewalls Attack Protection Configuration Guide-6PW101
51
• Select Permit from the Operation drop-down list.
• Select the Source IP Address check box.
• Type the source IP address 192.168.1.0.
• Type the source wildcard 0.0.0.255.
• Click Apply.
• Click Add.
• Select Deny from the Operation drop-down list.
• Click Apply.
• Select Firewall > NAT > Dynamic NAT from the navigation tree, and then click Add in the Address
Pool area.
• Type 1 in the Index text box.
• Type 2.2.2.10 in the Start IP Address text box.
• Type 2.2.2.11 in the End IP Address text box.
• Click Apply.
• Click Add in the Add Dynamic NAT area.
• Select GigabitEthernet0/1 from the Interface drop-down list.
• Type 2200 in the AC
L N
umber text box.
• Select PAT from the Address Transfer drop-down list.
• Type 1 in the Address Pool Index text box.
• Click Apply.
# Enable URL parameter filtering.
• Select Application Control > Web Filtering from the navigation tree, and then select the URL
Parameter Filtering tab.
• Select the check box before Enable URL Parameter Filtering.
• Click Apply.
# Add URL filtering keyword group.
• Click Add in the Keywords Setup area.
• Type group in the Keyword text box.
• Click Apply.
# Configure an ACL for Java blocking.
• Select Firewall > ACL from the navigation tree, and then click Add.
• Type 210 0 in the ACL Number text box.
• Click Apply.
• Click the icon of ACL 2100, and then click Add.
• Select Permit from the Operation drop-down list.
• Sel
ect the Source I
P Address check box.
• Type the source IP address 5.5.5.5.
• Type the source wildcard 0.0.0.0.
• Click Apply.
• Click Add.