This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Block all web sites, allow a few URLs

Hello,

We are trialing this endpoint system.  With our current platform I can set a deny all, but allow just Office 365 URL's to allow outlook/webmail only.  Is this possible?  I don't really see any options to set that up?



This thread was automatically locked due to age.
Parents Reply
  • You don't need to use all related XG features to do what you want, which I think lowers the complication factor a lot.

    All you need to do is have one Firewall rule to drop all HTTP/HTTPS traffic destined for the WAN, and above it place a rule that allows HTTP/HTTPS traffic but only to the websites you want to allow. Have these two rules early in the Firewalls Rules so that HTTP/HTTPS traffic is dropped before other rules that might allow it due to other factors.

    For the HTTP/HTTPS traffic that you allow, you should impost the appropriate CFS, IPS, and decryption conditions that make sense.

Children