Page 246 / 794 Scroll up to view Page 241 - 245
Vigor2860 Series User’s Guide
232
3.8.2 APPE Signature Upgrade
The APPE Enforcement Profile adopted by Vigor router will be treated as the APPE signature.
DrayTek will periodically upgrade versions for all of the APPs supported by Vigor router.
However, it might be inconvenient for users to upgrade the APP version one by one. This
feature is specially designed to offer a quick method to execute APP version upgrade. Users
can perform the APPE signature upgrade manually or configure the settings on this page to
make Vigor router performing the APPE signature automatically.
Available settings are explained as follows:
Item
Description
Upgrade Setting
APPE Module Version
– Display current version status of
APPE signature.
New version from the Internet
Download
button
is
available only when Vigor router detects new APPE
version. After clicking it, a dialog will appear with
information added to such new version. Click
OK
to exit
the dialog and start the signature upgrade.
Upgrade via interface
– Choose one of the WAN
interfaces as a channel for APPE signature upgrade.
Setup Download Server
Specify the download server by typing the URL of the
server located. Or you can click Find more
link to search
the one you want.
Signature authentication/download message
– Display
the status of APPE Signature Upgrade.
Upgrade Manually
Import
– Click this button to open the following page.
Press Choose File to locate the signature file which
downloaded from MyVigor portal or FTP server previously.
Page 247 / 794
Vigor2860 Series User’s Guide
233
Then, click
Upgrade
and wait for the system completing
the process.
Upgrade Automatically
Scheduled Update -
Check the box to make Vigor router
upgrading the APPE signature based on the schedule
configured here.
After finishing all the settings, please click
OK
to save the configuration.
Page 248 / 794
Vigor2860 Series User’s Guide
234
3.8.3 URL Content Filter Profile
To provide an appropriate cyberspace to users, Vigor router equips with
URL Content Filter
not only to limit illegal traffic from/to the inappropriate web sites but also prohibit other web
feature where malicious code may conceal.
Once a user type in or click on an URL with objectionable keywords, URL keyword blocking
facility will decline the HTTP request to that web page thus can limit user’s access to the
website. You may imagine
URL Content Filter
as a well-trained convenience-store clerk who
won’t sell adult magazines to teenagers. At office,
URL Content Filter
can also provide a
job-related only environment hence to increase the employee work efficiency. How can URL
Content Filter work better than traditional firewall in the field of filtering? Because it checks
the URL strings or some of HTTP data hiding in the payload of TCP packets while legacy
firewall inspects packets based on the fields of TCP/IP headers only.
On the other hand, Vigor router can prevent user from accidentally downloading malicious
codes from web pages. It’s very common that malicious codes conceal in the executable objects,
such as ActiveX, Java Applet, compressed files, and other executable files. Once downloading
these types of files from websites, you may risk bringing threat to your system. For example, an
ActiveX control object is usually used for providing interactive web feature. If malicious code
hides inside, it may occupy user’s system.
For example, if you add key words such as “sex”, Vigor router will limit web access to web
sites or web pages such as “www.sex.com”, ”www.backdoor.net/images/sex/p_386.html”. Or
you may simply specify the full or partial URL such as “www.sex.com” or “sex.com”.
Also the Vigor router will discard any request that tries to retrieve the malicious code.
Click
CSM
and click
URL Content Filter Profile
to open the profile setting page.
Each item is explained as follows:
Item
Description
Set to Factory Default
Clear all profiles.
Profile
Display the number of the profile which allows you to click
to set different policy.
Name
Display the name of the
URL Content Filter Profile.
Page 249 / 794
Vigor2860 Series User’s Guide
235
Administration Message
You can type the message manually for your necessity.
Default Message
- You can type the message manually for
your necessity or click this button to get the default message
which will be displayed on the field of
Administration
Message
.
You can set eight profiles as URL content filter. Simply click the index number under Profile
to open the following web page.
Available settings are explained as follows:
Item
Description
Profile Name
Type a name for the CSM profile. The maximum length of
the name you can set is 15 characters.
Priority
It determines the action that this router will apply.
Both: Pass
– The router will let all the packages that match
with the conditions specified in URL Access Control and
Web Feature below passing through. When you choose this
setting, both configuration set in this page for URL Access
Control and Web Feature will be inactive.
Both:Block
–The router will block all the packages that
match with the conditions specified in URL Access Control
and Web Feature below. When you choose this setting, both
configuration set in this page for URL Access Control and
Web Feature will be inactive.
Either: URL Access Control First
– When all the
packages matching with the conditions specified in URL
Access Control and Web Feature below, such function can
determine the priority for the actions executed. For this one,
the router will process the packages with the conditions set
below for URL first, then Web feature second.
Either: Web Feature First
–When all the packages
Page 250 / 794
Vigor2860 Series User’s Guide
236
matching with the conditions specified in URL Access
Control and Web Feature below, such function can
determine the priority for the actions executed. For this one,
the router will process the packages with the conditions set
below for web feature first, then URL second.
Log
None
– There is no log file will be recorded for this profile.
Pass
– Only the log about Pass will be recorded in Syslog.
Block
– Only the log about Block will be recorded in
Syslog.
All
– All the actions (Pass and Block) will be recorded in
Syslog.
URL Access Control
Enable URL Access Control
- Check the box to activate
URL Access Control. Note that the priority for
URL
Access Control
is higher than
Restrict Web Feature
. If
the web content match the setting set in URL Access
Control, the router will execute the action specified in this
field and ignore the action specified under Restrict Web
Feature.
Prevent web access from IP address
- Check the box to
deny any web surfing activity using IP address, such as
http://202.6.3.2. The reason for this is to prevent someone
dodges the URL Access Control. You must clear your
browser cache first so that the URL content filtering facility
operates properly on a web page that you visited before.
Action
– This setting is available only when
Either : URL
Access Control First
or
Either : Web Feature First
is
selected.
Pass
-
Allow accessing into the corresponding
webpage with the keywords listed on the box below.
Block -
Restrict accessing into the corresponding webpage
with the keywords listed on the box below.
If the web pages do not match with the keyword set here, it
will be processed with reverse action.
Group/Object Selections
– The Vigor router provides
several frames for users to define keywords and each frame
supports multiple keywords. The keyword could be a noun,

Rate

4 / 5 based on 1 vote.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top