Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Creating Content Security Profiles

Use the Create Content Security Profiles page to configure Content Security profiles. Content Security consolidates several security features to protect against multiple threat types. The Create Content Security Profiles wizard provides step-by-step procedures to create a Content Security profile. You can configure antispam, antivirus, Web filtering, and content filtering profiles by launching the respective wizards from the wizard.

To create a Content Security profile:

  1. Select Configuration > Unified Threat Mgmt > UTM Profiles in Customer Portal.

    The Content Security Profiles page appears.

  2. Click the add icon (+) to create a new Content Security profile.

    The Create Content Security Profiles wizard appears, displaying brief instructions about creating a Content Security profile.

  3. Click Next to navigate to the next page.
  4. Complete the configuration according to the guidelines provided in Table 1.
    Note:

    Fields marked with * are mandatory.

  5. Click Finish.

    A Content Security profile is created. You are returned to the Content Security Profiles page where a confirmation message is displayed. After you create a Content Security profile, you can assign it to a firewall policy intent on the Firewall Policy page.

Table 1: Content Security Profile Settings

Setting

Guideline

General

Name

Enter a unique name for the Content Security profile. The maximum length is 29 characters.

Description

Enter a description for the Content Security profile. The maximum length is 255 characters.

Traffic Options

Note:

In an attempt to consume all available resources, a malicious user might generate a large amount of traffic all at once. To prevent such activity from succeeding, you can impose traffic options.

Connection Limit per Client

Specify the connection limit per client for client connections on the device. The default is 2000 and a value of 0 means that there is no connection limit.

Action when connection limit is reached

Specify the action that must be taken when the connection limit is reached. The available actions are No action (default), Log and permit, and Block.

Click Next to continue.

Web Filtering

HTTP

Select the Web filtering profile to be applied for HTTP traffic.

Alternatively, click Create Another Profile to create a Web filtering profile. The Create Web Filtering Profiles wizard appears. See Creating Web Filtering Profiles for an explanation of the fields on this wizard.

Click Back to go the preceding step or click Next to go to the next step.

Antivirus

Apply to all protocols

Select this check box to apply a single antivirus profile to all traffic protocols. and then specify the profile in the Default Profile field.

Clear the check box if you want to apply traffic-specific profiles.

Default Profile

Select the antivirus profile to be applied to all traffic protocols.

Click Back to go the preceding step or click Next to go to the next step.

Note:

Click Create Another Profile to create an antivirus profile that you can then assign. The Create Antivirus Profiles wizard appears. See Creating Antivirus Profiles for an explanation of the fields on this wizard.

HTTP

Select the antivirus profile to be applied to HTTP traffic.

FTP Upload

Select the antivirus profile to be applied to FTP upload traffic.

FTP Download

Select the antivirus profile to be applied to FTP download traffic.

IMAP

Select the antivirus profile to be applied to IMAP traffic.

SMTP

Select the antivirus profile to be applied to SMTP traffic.

POP3

Select the antivirus profile to be applied to POP3 traffic.

Click Back to go the preceding step or click Next to go to the next step.

Antispam

SMTP

Select the antispam profile to be applied for SMTP traffic.

Alternatively, click Create Another Profile to create an antispam profile. The Create Antispam Profiles wizard appears. See Creating Antispam Profiles for an explanation of the fields on this wizard.

Click Back to go the preceding step or click Next to go to the next step.

Content Filtering

Apply to all protocols

Select this check box to apply a single content filtering profile to all traffic protocols. and then specify the profile in the Default Profile field.

Clear the check box if you want to apply traffic-specific profiles.

Default Profile

Select the content filtering profile to be applied to all traffic protocols.

Click Back to go the preceding step or click Next to go to the next step.

Note:

Click Create Another Profile to create a content filtering profile that you can then assign. The Create Content Filtering Profiles wizard appears. See Creating Content Filtering Profiles for an explanation of the fields on this wizard.

HTTP

Select the content filtering profile to be applied to HTTP traffic.

FTP Upload

Select the content filtering profile to be applied to FTP upload traffic.

FTP Download

Select the content filtering profile to be applied to FTP download traffic.

IMAP

Select the content filtering profile to be applied to IMAP traffic.

SMTP

Select the content filtering profile to be applied to SMTP traffic.

POP3

Select the content filtering profile to be applied to POP3 traffic.

Click Back to go the preceding step.