R3721-F3210-F3171-HP High-End Firewalls Attack Protection Configuration Guide-6PW101

58
Task Descri
p
tion
Configuring URL hostname
filtering entries
Used for URL hostname filtering in HTTP filtering policies.
By default, no URL hostname filtering entries exist.
Configuring filename filtering
entries
Filename filtering entries include:
SMTP filename filtering entries—For attachment name filtering in SMTP
filtering policies.
POP3 filename filtering entries—For attachment name filtering in POP3
filtering policies.
FTP filename filtering entries—For upload filename filtering and
download filename filtering in FTP filtering policies.
By default, no filename filtering entries exist.
Configuring email address
filtering entries
Email address filtering entries include:
SMTP email address filtering entries—For sender filtering and receiver
filtering in SMTP filtering policies.
POP3 email address filtering entries—For sender filtering and receiver
filtering in POP3 filtering policies.
By default, no mail address filtering entries exist.
Configuring URL parameter
filtering keywords
Add keywords to be used for URL parameter filtering in HTTP filtering
policies.
By default, the system has the following URL parameter filtering keywords:
^select$, ^insert$, ^update$, ^delete$, ^drop$, --, ', ^exec$, and %27.
Configuring java blocking
keywords
Used for Java applet blocking in HTTP filtering policies.
By default, the following Java suffix keywords exist: .class and .jar.
Configuring ActiveX blocking
keywords
Used for ActiveX blocking in HTTP filtering policies.
By default, the system has the ActiveX suffix keyword: .ocx.
2. Configure content filtering policies
Content filtering policies fall into HTTP filtering policies, SMTP filtering policies, POP3 filtering
policies, FTP filtering policies, and Telnet filtering policies. You can configure one or more content
filtering policies as needed.
Table 19 Content filtering policy configuration task list
Task Descri
p
tion
Configuring an HTTP filtering policy By default, no HTTP filtering policies exist.
Configuring an SMTP filtering policy By default, no SMTP filtering policies exist.
Configuring a POP3 filtering policy By default, no POP3 filtering policies exist.
Configuring an FTP filtering policy By default, no FTP filtering policies exist.
Configuring a telnet filtering policy By default, no Telnet filtering policies exist.
3. Configure a content filtering policy template
A content filtering policy template is a combination of an HTTP filtering policy and an SMTP
filtering policy. It can be applies to an interzone policy directly.