Try creating a "Application Firewall" POLICY and ACTION.
Click the "Wizards" button on the top right corner of web page (next to "Help" and "Logout"). Then choose "Application Firewall Wizard..." radio button, then "Next", then "Next" again, then "I would like to apply a policy to Web Access", then " Look for access to specific URLs", then enter the info you want to block (read the help if you need to at this point). Then continue through wizard until you are done, or press the back buttons to change your previous settings or to look-around.
Once out of the wizard, you can then modify the POLICIES and ACTIONS automatically created by the wizard. The Application Firewall services is a VERY powerful feature! BTW, try using "HTTP Host" under the POLICY settings, instead of "HTTP Content" (default from Wizard), when working on controlling traffic to and from IP addresses.
Main Topics
Browse All Topics





by: hmarePosted on 2009-08-03 at 13:43:17ID: 25008455
You would create a firewall rule (if a local user, LAN>WAN)
from zone: LAN
to zone: WAN
service: http
source: use that users ip
destination: ANY
this would block that user from any web traffic. It would require a static ip on the user, and you would probably want one for https as well