This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Server protection web control - How to block with exceptions

How do I achieve blocking all web access from a server with a few exceptions?



This thread was automatically locked due to age.
Parents
  • The screenshot provided above works is for Web control policy which looks the same for servers and for endpoints. The difference is that Web control for endpoints is a User-based policy only - you cannot make it device-specific, but Server web control policy is only device-specific. Web control is not designed to block everything but to limit what can be accessed for that one machine.

    As a workaround, you can create a new Web control policy, assign it to the desired server, confirm that the policy is enforced. Populate a list of resources in Global settings -> Website management with a tag, then as  Sophos User930  mentioned block all categories and allow everything tagged. If this for some reason doesn't fit your requirements, then your best bet is to set up access through web appliance\firewall. 

Reply
  • The screenshot provided above works is for Web control policy which looks the same for servers and for endpoints. The difference is that Web control for endpoints is a User-based policy only - you cannot make it device-specific, but Server web control policy is only device-specific. Web control is not designed to block everything but to limit what can be accessed for that one machine.

    As a workaround, you can create a new Web control policy, assign it to the desired server, confirm that the policy is enforced. Populate a list of resources in Global settings -> Website management with a tag, then as  Sophos User930  mentioned block all categories and allow everything tagged. If this for some reason doesn't fit your requirements, then your best bet is to set up access through web appliance\firewall. 

Children
No Data