Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
26-5
Cisco ASDM User Guide
OL-16647-01
Chapter 26 Configuring Filter Rules
Filter Rules
Source/Destination Address—Caches entries based on both the source address initiating the
URL request as well as the URL destination address. Choose this mode if users do not share the
same URL filtering policy on the server.
Cache size—Specifies the size of the cache.
URL Buffer Size area
When a user issues a request to connect to a content server, the security appliance sends the request
to the content server and to the filtering server at the same time. If the filtering server does not
respond before the content server, the server response is dropped. This delays the web server
response from the point of view of the web client because the client must reissue the request.
By enabling the HTTP response buffer, replies from web content servers are buffered and the
responses are forwarded to the requesting client if the filtering server allows the connection. This
prevents the delay that might otherwise occur.
Enable buffering—Enables request buffering.
Number of 1550-byte buffers—Specifies the number of 1550-byte buffers. Valid values are from
1 to 128.
Long URL Support area
By default, the security appliance considers an HTTP URL to be a long URL if it is greater than
1159 characters. For Websense servers, you can increase the maximum length allowed.
Use Long URL—Enables long URLs for Websense filtering servers.
Maximum Long URL Size—Specifies the maximum URL length allowed, up to a maximum of
4 KB.
Memory Allocated for Long URL—Specifies the memory allocated for long URLs.
Modes
The following table shows the modes in which this feature is available:
Filter Rules
The Filter Rules pane displays configured filter rules and provides options for adding new filter rules or
modifying existing rules. A filter rule specifies the type of filtering to apply and the kind of traffic to
which it should be applied.
Note Before you can add an HTTP, HTTPS, or FTP filter rule, you must enable a URL filtering server. To
enable a URL filtering server, use the Configuration > Firewall > URL Filtering Servers pane. For more
information, see URL Filtering, page 26-1.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• • • •