R3166-R3206-HP High-End Firewalls Attack Protection Configuration Guide-6PW101
53
Figure 42 Java blocking configuration results
The above information indicates that the URL parameter filtering keyword group and the Java blocking
keyword .js have been matched once respectively.
Configuring web filtering in the CLI
IP address-supported URL filtering can take effect only after the URL address filtering is enabled. URL
parameter filtering, Java blocking, and ActiveX blocking can be enabled independently.
Configuring URL address filtering
Follow these steps to configure URL address filtering:
To do... Use the command...
Remarks
Enter system view system-view —
Enable the URL address filtering
function
firewall http url-filter host enable
Required
Disabled by default
Specify the default filtering action
firewall http url-filter host default { deny |
permit }
Optional
deny by default
Add a URL address filtering entry
firewall http url-filter host url-address { deny
| permit } url-address
Required
Save URL address filtering entries
into a specified file
firewall http url-filter host save file-name Optional
Specify to load a URL address
filtering file at restart
firewall http url-filter host load file-name Optional
Display information about URL
address filtering
display firewall http url-filter host [ all | item
keywords | verbose ]
Optional