Делаем четыре политики: Block access (Блокирование доступа), Unlimited access (Неограниченный доступ), Web filtering (Веб-фильтрация), Port filtering (Фильтрация портов).
1) Choose Policy Name -> Block access, Select Schedule -> Always, Select Machine -> Other Machines -> Block All Access 2) Choose Policy Name -> Unlimited access, Select Schedule -> Never, Address Type -> MAC (стационарный компьютер), Select Filtering Method -> Apply Web Filter -> Block Some Access 3) Choose Policy Name -> Web filtering, Select Schedule -> Always, Address Type -> MAC (ноутбук), Select Filtering Method -> Apply Web Filter -> Block Some Access, Web Access Logging -> Enabled 4) Choose Policy Name -> Port filtering, Select Schedule -> Always, Address Type -> MAC (ноутбук), Select Filtering Method ->Apply Advanced Port Filters -> Block Some Access -> Port Filter
Port Filter: Name -> Rule_1, Dest IP Start -> 0.0.0.0, Dest IP End -> 255.255.255.255, Protocol -> TCP, Dest Port Start -> 1, Dest Port End -> 442 Name -> Rule_2, Dest IP Start -> 0.0.0.0, Dest IP End -> 255.255.255.255, Protocol -> TCP, Dest Port Start -> 444, Dest Port End -> 65535
Статистика: Заходим в раздел SysLog, ставим галочку напротив пункта Enable Logging To Syslog Server и прописываем адрес syslog сервера.
|