Use the Action Taken area and the Comfort Page area in the Policy Settings page to enable or disable each type of drop filter setting using the Web UI.
You select the settings for each type of drop filter on each port pair that is configured on an appliance interface in the Action Taken area.
Setting | Description |
|---|---|
Insert User side warning with Comfort page | The comfort page is posted to the client when an infected HTTP connection has been blocked, and a TCP reset packet is sent to the host IP even if you do not select the TCP reset enable setting. |
TCP reset enable | A TCP connection reset is enabled according to the configuration set in step 2. |
TCP reset client | A TCP client-side connection is reset according to the configuration set in step 2. |
TCP reset server | A TCP server-side connection is reset according to the configuration set in step 2. |
Host unreachable | The “icmp port unreachable” message is posted when infected UDP packets have been blocked. |
Use the Comfort Page area to configure a message about the blocked URL or set a redirect URL. You can select the way the message is presented:
Message view - You can add a simple text message along with the Trellix template in this view.
HTML view - You can add customized HTML content and have full control over the comfort page in this view. Use this view only if you need to add HTML tags.
You can send a HTTP response code of Access Denied(401) or Access Forbidden(403). If you set a redirect URL, you can select Temporary Redirect(302) as the response code.
Note
To use non-ASCII-based characters or native character code support in the message for the Comfort Page text, use the HTML UCS decimal options in the Web UI. These options allow unicode characters. You can add up to 15000 characters in the message and HTML tags as necessary for the comfort page.
In the Web UI, choose Settings > Inline Operational Modes.
If blocking mode is selected, select the checkbox to enable each relevant drop filter in the Action Taken area:
Insert User side warning with Comfort page
TCP reset enable
TCP reset client
TCP reset server
Host unreachable
If Insert User side warning with Comfort page is enabled, select a comfort type in the Comfort Type column in the Comfort Page area:
Comfort Page Message
Redirect URL
If Insert User side warning with Comfort page is enabled, select a response in the HTTP Response Code column in the Comfort Page area:
Access Denied
Access Forbidden
Temporary Redirect (This option is available only when you select Redirect URL as the Comfort Type.)
If you selected Comfort Page Message as the Comfort Type, select the comfort message view:
Message
HTML
In the Comfort Page Message field in the Comfort Page area, edit the text.
If you selected Redirect URL as the Comfort Type, enter the URL of the page to display.
To preview the Comfort Page message before you save it, click the Preview Saved Changes link on the far right of the Comfort Page area.
To configure the appliance with the selected settings, click UPDATE.
In the Web UI, choose Settings > Inline Operational Modes.
If blocking mode is selected, clear the checkbox to disable each relevant drop filter in the Action Taken area:
Insert User side warning with Comfort page
TCP reset enable
TCP reset client
TCP reset server
Host unreachable
Click UPDATE.