Specifications
Using the OfficeScan Firewall
7-5
Firewall Policies
Firewall policies allow you to block or allow certain types of network traffic not
specified in a policy exception. A policy also defines which firewall features get enabled
or disabled. Assign a policy to one or multiple firewall profiles.
OfficeScan comes with a set of default policies, which you can modify or delete.
The default firewall policies are as follows:
TABLE 7-36. Default firewall policies
POLICY
NAME
SECURITY
LEVEL
CLIENT
SETTINGS
EXCEPTIONS
RECOMMENDED
USE
All access Low Enable
firewall
None Use to allow
clients
unrestricted
access to the
network
Cisco Trust
Agent for
Cisco NAC
Low Enable
firewall
Allow incoming
and outgoing
UDP traffic
through port
21862
Use when
clients have a
Cisco Trust
Agent (CTA)
installation
Communicati
on Ports for
Trend Micro
Control
Manager
Low Enable
firewall
Allow all
incoming and
outgoing
TCP/UDP traffic
through ports 80
and 10319
Use when
clients have an
MCP agent
installation
ScanMail for
Microsoft
Exchange
console
Low Enable
firewall
Allow all
incoming and
outgoing TCP
traffic through
port 16372
Use when
clients need to
access the
ScanMail
console










