Watchguard Fireware XTM WSM User guide

  • Hello! I am an AI chatbot trained to assist you with the Watchguard Fireware XTM WSM User guide. I’ve already reviewed the document and can help you find the information you need or explain it in simple terms. Just ask your questions, and providing more details will help me assist you more effectively!
WatchGuard System
Manager 11.7 User Guide
Fireware XTM
WatchGuard System Manager
11.7 User Guide
WatchGuard XTMDevices
ii WatchGuard System Manager
About this User Guide
The Fireware XTM WatchGuard System Manager User Guide is updated with each major product
release. For minor product releases, only the Fireware XTM WatchGuard System Manager Help
system is updated. The Help system also includes specific, task-based implementation examples that
are not available in the User Guide.
For the most recent product documentation, see the Fireware XTM WatchGuard System Manager
Help on the WatchGuard web site at: http://www.watchguard.com/help/documentation/.
Information in this guide is subject to change without notice. Companies, names, and data used in
examples herein are fictitious unless otherwise noted. No part of this guide may be reproduced or
transmitted in any form or by any means, electronic or mechanical, for any purpose, without the
express written permission of WatchGuard Technologies, Inc.
Guide revised: 1/24/2013
Copyright, Trademark, and Patent Information
Copyright © 1998-2011 WatchGuard Technologies, Inc. All rights reserved. All trademarks or trade
names mentioned herein, if any, are the property of their respective owners.
Complete copyright, trademark, patent, and licensing information can be found in the Copyright and
Licensing Guide, available online at: http://www.watchguard.com/help/documentation/.
Note This product is for indoor use only.
About WatchGuard
WatchGuard offers affordable, all-in-one network and content
security solutions that provide defense-in-depth and help meet
regulatory compliance requirements. The WatchGuard XTM
line combines firewall, VPN, GAV, IPS, spam blocking and
URL filtering to protect your network from spam, viruses,
malware, and intrusions. The new XCS line offers email and
web content security combined with data loss prevention.
WatchGuard extensible solutions scale to offer right-sized
security ranging from small businesses to enterprises with 10,
000+ employees. WatchGuard builds simple, reliable, and
robust security appliances featuring fast implementation and
comprehensive management and reporting tools. Enterprises
throughout the world rely on our signature red boxes to
maximize security without sacrificing efficiency and
productivity.
For more information, please call 206.613.6600 or visit
www.watchguard.com.
Address
505 Fifth Avenue South
Suite 500
Seattle, WA 98104
Support
www.watchguard.com/support
U.S. and Canada +877.232.3531
All Other Countries +1.206.521.3575
Sales
U.S. and Canada +1.800.734.9905
All Other Countries +1.206.613.0895
User Guide iii
Table of Contents
WatchGuard System Manager 11.7 User Guide 1
Introduction to Network Security 1
About Networks and Network Security 1
About Internet Connections 1
About Protocols 2
About IP Addresses 3
IPv4 Addresses 3
IPv6 Addresses 4
About Slash Notation 5
About Entering Addresses 6
Static and Dynamic IP Addresses 6
About DNS (Domain Name System) 7
About Firewalls 8
About Services and Policies 9
About Ports 10
Introduction to Fireware XTM 11
About Fireware XTM 11
Fireware XTM Components 12
WatchGuard System Manager 12
WatchGuard Server Center 13
Fireware XTM Web UI and Command Line Interface 14
Fireware XTMwith a Pro Upgrade 15
Fireware XTM OS Version Compatibility 16
Fireware XTM on an XTMv Device 17
XTMv Device Limitations 17
XTMv Device Installation 17
VMware Virtual Switch Configuration 17
FIPS Support in Fireware XTM 18
About FIPSMode 18
FIPS Mode Operation and Constraints 18
Service and Support 19
About WatchGuard Support 19
LiveSecurity Service 19
LiveSecurity Service Gold 20
Service Expiration 21
Getting Started 23
Before You Begin 23
Verify Basic Components 23
Get an XTM Device Feature Key 24
Gather Network Addresses 24
Select a Firewall Configuration Mode 25
Decide Where to Install Server Software 26
Install WatchGuard System Manager Software 26
Back up Your Previous Configuration 27
Download WatchGuard System Manager 27
About the Quick Setup Wizard 28
Run the Web Setup Wizard 30
Run the WSM Quick Setup Wizard 33
Complete Your Installation 35
Customize Your Security Policy 35
About LiveSecurity Service 36
Start WatchGuard System Manager 36
Connect to an XTM Device 36
Start WSMApplications 38
Install WSM and Keep an Older Version 40
Install WatchGuard Servers on Computers with Desktop Firewalls 40
Downgrade to an Earlier Version of WSM 41
Step 1 — Uninstall the Current WSM Version 41
Step 2 — Restore the Earlier WSMVersion Server and Database Files 41
Step 3 — Install the Earlier Version of WSM 41
Dynamic IP Support on the External Interface 42
About Connecting the XTM Device Cables 42
Connect to an XTM Device with Firefox v3 43
Add a Certificate Exception to Mozilla Firefox v3 43
iv WatchGuard System Manager
User Guide v
Disable the HTTP Proxy in the Browser 44
Disable the HTTP proxy in Internet Explorer 7.x, or 8.x 44
Disable the HTTP proxy in Firefox 3.x 45
Find Your TCP/IP Properties 45
Find Your TCP/IP Properties on Microsoft Windows XP, Windows 2003, and Windows 7 45
Find Your TCP/IP Properties on Microsoft Windows 8. 46
Find Your TCP/IP Properties on Macintosh OS X 10.x 46
Find Your TCP/IP Properties on Other Operating Systems (Unix, Linux) 46
Configuration and Management Basics 47
About Basic Configuration and Management Tasks 47
About Configuration Files 47
Open a Configuration File 47
Make a New Configuration File 50
Save the Configuration File 51
Run the XTMConfiguration Report 52
Make a Backup of the XTM Device Image 53
Restore an XTM Device Backup Image 55
Use a USB Drive for System Backup and Restore 56
About the USB Drive 56
Save a Backup Image to a Connected USB Drive 56
Restore a Backup Image from a Connected USB Drive 57
Automatically Restore a Backup Image from a USB Drive 57
USB Drive Directory Structure 60
Save a Backup Image to a USB Drive Connected to Your Management Computer 61
Use a USBDrive to Save a Support Snapshot 61
Use an Existing Configuration for a New XTM Device Model 63
Upgrade a Non-e-Series Configuration File For Use With an e-Series or XTM Device 67
Configure a Replacement XTM Device 68
Save the Configuration from the Original XTM Device to a File 68
Get the Feature Key for the Replacement XTM Device 68
Use the Quick Setup Wizard to Configure Basic Settings 68
Update the Feature Key in the Original Configuration File and Save to the New Device 69
Reset an XTM Device 70
Start an XTM Device in Safe Mode 70
Reset an XTM 2 Series or XTM33 to Factory-Default Settings 70
Reset an XTMv to Factory-Default Settings 71
Run the Setup Wizard 71
Reset a Firebox Xe-Series Device 71
Start a Firebox X Core or Peak e-Series Device in Safe Mode 71
Reset a Firebox X Edge e-Series to factory-default settings 73
Run the Quick Setup Wizard 73
About Factory-Default Settings 73
About Feature Keys 75
See Features Available with the Current Feature Key 75
Enable Feature Key Synchronization 76
Verify Feature Key Compliance 76
Get a Feature Key for Your XTMDevice 76
Manually Add a Feature Key to Your XTM Device 79
See the Details of a Feature Key 81
Enable Automatic Feature Key Synchronization 82
Download a Feature Key 82
Enable NTP and Add NTP Servers 83
Set the Time Zone and Basic Device Properties 84
About SNMP 85
SNMP Polls and Traps 85
Enable SNMP Polling 86
Enable SNMP Management Stations and Traps 87
About Management Information Bases (MIBs) 89
About WatchGuard Passphrases, Encryption Keys, and Shared Keys 90
Create a Secure Passphrase, Encryption Key, or Shared Key 90
XTM Device Passphrases 91
User Passphrases 91
Server Passphrases 91
Encryption Keys and Shared Keys 92
Change XTM Device Passphrases 93
Define XTM Device Global Settings 94
vi WatchGuard System Manager
User Guide vii
Define ICMP Error Handling Global Settings 95
Configure TCP Settings 96
Enable or Disable Traffic Management and QoS 96
Change the Web UI Port 96
Enable the External Console on a Firebox X Edge e-Series Device 97
Automatic Reboot 97
Manage an XTM Device From a Remote Location 97
Upgrade to a New Version of Fireware XTM 100
Install the Upgrade on Your Management Computer 100
Upgrade the XTM Device 100
Use Multiple Versions of Policy Manager 102
Downgrade Fireware XTMOS 103
Use a Saved Backup Image to Downgrade 103
Downgrade Without a Backup Image 103
Use the Quick Setup Wizard to Downgrade Fireware XTMOS 104
About Upgrade Options 108
Subscription Services Upgrades 108
Appliance and Software Upgrades 108
How to Apply an Upgrade 109
About Subscription Services Expiration 109
Subscription Renewal Reminders 109
Feature Key Compliance 110
Security Service Expiration Behavior 110
Gateway AntiVirus 110
Intrusion Prevention Service (IPS) 110
WebBlocker 111
spamBlocker 111
Reputation Enabled Defense 111
Application Control 111
LiveSecurity Service 112
Subscription Expiration and FireCluster 112
Synchronize Subscription Renewals 113
Renew Subscription Services 113
Renew Subscriptions from Firebox System Manager 114
Network Setup and Configuration 115
About Network Interface Setup 115
Network Modes 116
Interface Types 117
About Private IPAddresses 117
About Network Interfaces on the Edge e-Series 118
About IPv6 Support 118
Mixed Routing Mode 120
Configure an External Interface 120
Enable IPv6 for an External Interface 124
Enable IPv6 for a Trusted or Optional Interface 126
Configure IPv6 Connection Settings 129
Configure DHCP in Mixed Routing Mode 130
About the Dynamic DNS Service 132
Use Dynamic DNS 133
Drop-In Mode 134
Use Drop-In Mode for Network Interface Configuration 135
Configure Related Hosts 136
Configure DHCP in Drop-In Mode 137
Bridge Mode 140
Enable Bridge Mode 141
Allow Management Access from a VLAN 142
Common Interface Settings 143
Disable an Interface 144
Configure DHCPRelay 145
Restrict Network Traffic by MAC Address 146
Add WINS and DNS Server Addresses 147
Add a Secondary Network IPAddress 149
About Advanced Interface Settings 152
Network Interface Card (NIC)Settings 152
Set Outgoing Interface Bandwidth 154
Set DF Bit for IPSec 155
viii WatchGuard System Manager
User Guide ix
PMTU Setting for IPSec 155
Use Static MAC Address Binding 156
Find the MAC Address of a Computer 156
About LAN Bridges 157
Create a Network Bridge Configuration 157
Assign a Network Interface to a Bridge 159
About Routing 160
Add a Static Route 160
Read the Route Tables 161
Add Static ARPEntries 163
About Virtual Local Area Networks (VLANs) 164
VLAN Requirements and Restrictions 164
About Tagging 165
About VLANIDNumbers 165
Define a New VLAN 165
Assign Interfaces to a VLAN 170
About Link Aggregation 171
Requirements and Limitations 171
Link Aggregation Modes 171
Configure Link Aggregation 173
Monitor Link Aggregation Interfaces 179
Network Setup Examples 180
Configure Two VLANs on the Same Interface 180
Configure One VLAN Bridged Across Two Interfaces 184
Use the Broadband Extend or 3G Extend Wireless Bridge 188
Multi-WAN 191
About Using Multiple External Interfaces 191
Multi-WAN Requirements and Conditions 191
Multi-WAN and DNS 192
Multi-WAN and FireCluster 192
About Multi-WAN Options 193
Round-Robin Order 193
Failover 193
Interface Overflow 194
Routing Table 194
Serial Modem (XTM2 Series and XTM 33 only) 194
Configure Round-Robin 195
Before You Begin 195
Configure the Interfaces 195
Find How to Assign Weights to Interfaces 197
Configure Failover 197
Before You Begin 197
Configure the Interfaces 197
Configure Interface Overflow 199
Before You Begin 199
Configure the Interfaces 199
Configure Routing Table 200
Before You Begin 200
Routing Table mode and load balancing 200
Configure the Interfaces 201
About the XTM Device Route Table 202
When to Use Multi-WAN Methods and Routing 202
Serial Modem Failover 203
Enable Serial Modem Failover 203
Account Settings 204
DNS Settings 205
Dial-up Settings 206
Advanced Settings 206
Link Monitor Settings 206
Advanced Multi-WAN Settings 208
About Sticky Connections 208
Set a Global Sticky Connection Duration 208
Set the Failback Action 209
Set Notification Settings 210
About WAN Interface Status 211
Time Needed for the XTM Device to Update its Route Table 211
x WatchGuard System Manager
User Guide xi
Define a Link Monitor Host 211
Network Address Translation (NAT) 213
About Network Address Translation 213
Types of NAT 214
About Dynamic NAT 214
Add Network Dynamic NAT Rules 216
Configure Policy-Based Dynamic NAT 219
About Dynamic NATSource IPAddresses 222
About 1-to-1 NAT 224
About 1-to-1 NAT and VPNs 225
Configure Firewall 1-to-1 NAT 225
Configure Policy-Based 1-to-1 NAT 227
Configure NAT Loopback with Static NAT 229
Add a Policy for NATLoopback to the Server 230
NAT Loopback and 1-to-1 NAT 231
About SNAT 234
Configure Static NAT 234
Configure Server Load Balancing 238
1-to-1 NAT Example 245
Wireless Setup 247
About Wireless Configuration 247
About Wireless Access Point Configuration 248
Before You Begin 249
About Wireless Configuration Settings 250
Enable/Disable SSID Broadcasts 251
Change the SSID 251
Log Authentication Events 251
Change the Fragmentation Threshold 251
Change the RTS Threshold 253
About Wireless Security Settings 253
Set the Wireless Authentication Method 253
Use a RADIUS Server for Wireless Authentication 255
Use the XTMDevice as an Authentication Server for Wireless Authentication 256
Set the Encryption Level 257
Enable Wireless Connections to the Trusted or Optional Network 259
Enable a Wireless Guest Network 261
Enable a Wireless Hotspot 264
Configure User Timeout Settings 265
Select the Hotspot Type 265
Configure the Hotspot Settings 266
Configure the Hotspot Custom Page 267
Connect to a Wireless Hotspot 269
See Wireless Hotspot Connections 270
About Hotspot External Guest Authentication 272
Before You Begin 272
Configuration 273
External Guest Authentication Example 273
Configure a Web Server for Hotspot External Guest Authentication 276
Configure the XTMHotspot for External Guest Authentication 280
Troubleshoot Hotspot External Guest Authentication 282
Configure Your External Interface as a Wireless Interface 284
Configure the Primary External Interface as a Wireless Interface 284
Configure a BOVPN tunnel for additional security 286
About Wireless Radio Settings 287
Country is Set Automatically 288
Select the Band and Wireless Mode 289
Select the Channel 289
Configure the Wireless Card on Your Computer 290
Rogue Access Point Detection 290
Enable Rogue Access Point Detection 291
Add an XTMWireless Device as a Trusted Access Point 296
Find the Wireless MACAddress of a Trusted Access Point 299
Rogue Access Point Scan Results 300
Dynamic Routing 301
About Dynamic Routing 301
Dynamic Routing Protocols 301
xii WatchGuard System Manager
User Guide xiii
Dynamic Routing Policies 301
Monitor Dynamic Routing 302
About Routing Daemon Configuration Files 302
About Routing Information Protocol (RIP) 302
Routing Information Protocol (RIP) Commands 303
Configure the XTM Device to Use RIP 305
Sample RIP Routing Configuration File 307
About Open Shortest Path First (OSPF) Protocol 309
OSPF Commands 309
OSPF Interface Cost Table 312
Configure the XTM Device to Use OSPF 313
Sample OSPF Routing Configuration File 315
About Border Gateway Protocol (BGP) 318
BGP Commands 319
Configure the XTM Device to Use BGP 321
Sample BGP Routing Configuration File 323
FireCluster 325
About WatchGuard FireCluster 325
FireCluster Status 327
About FireCluster Failover 327
Events that Trigger a Failover 327
What Happens When a Failover Occurs 328
FireCluster Failover and Server Load Balancing 329
FireCluster Failover and Dynamic Routing 329
Monitor the Cluster During a Failover 330
Features Not Supported for a FireCluster 330
FireCluster Network Configuration Limitations 330
FireCluster Management Limitations 330
Supported XTM Models for FireCluster 330
About FireCluster Management IPAddresses 330
Use the Management IP Address to Restore a Backup Image 332
Use the Management IP Address to Upgrade from an External Location 332
The Management IPAddress and the WatchGuard Policy 332
About FireCluster on XTM Wireless Devices 334
Configure FireCluster 334
FireCluster Requirements and Restrictions 335
Cluster Synchronization and Status Monitoring 335
FireCluster Device Roles 336
FireCluster Configuration Steps 336
Before You Begin 337
Connect the FireCluster Hardware 339
Switch and Router Requirements for an Active/Active FireCluster 340
Use the FireCluster Setup Wizard 346
Configure FireCluster Manually 352
Find the Multicast MAC Addresses for an Active/Active Cluster 358
Active/Passive Cluster ID and the Virtual MAC Address 359
Monitor and Control FireCluster Members 360
Monitor Status of FireCluster Members 361
Monitor and Control Cluster Members 361
Monitor Cluster Health 363
Discover a Cluster Member 364
Force a Failover of the Cluster Master 365
Reboot a Cluster Member 367
Shut Down a Cluster Member 367
Connect to a Cluster Member 368
Make a Member Leave a Cluster 369
Make a Member Join a Cluster 370
Remove or Add a Cluster Member 371
Remove a Device from a FireCluster 371
Add a New Device to a FireCluster 372
Update the FireCluster Configuration 372
Configure FireCluster Advanced Settings 373
Configure Logging and Notification 373
Change the Lost Heartbeat Threshold 373
Use Hardware Status as a Criteria for FireCluster Failover 373
About Feature Keys and FireCluster 374
xiv WatchGuard System Manager
User Guide xv
See the Feature Keys and Cluster Features for a Cluster 376
See or Update the Feature Key for a Cluster Member 377
See the FireCluster Feature Key in Firebox System Manager 379
Create a FireCluster Backup Image 380
Restore a FireCluster Backup Image 381
Make the Backup Master Leave the Cluster 381
Restore the Backup Image to the Backup Master 381
Restore the Backup Image to the Cluster Master 381
Make the Backup Master Rejoin the Cluster 382
Upgrade Fireware XTM for FireCluster Members 383
Disable FireCluster 384
Authentication 385
About User Authentication 385
User Authentication Steps 386
Manage Authenticated Users 387
Use Authentication to Restrict Incoming Traffic 388
Use Authentication Through a Gateway Firebox 389
About the WatchGuard Authentication (WG-Auth) Policy 390
Set Global Firewall Authentication Values 390
Set Global Authentication Timeouts 391
Allow Unlimited Concurrent Login Sessions 392
Limit Login Sessions 392
Specify the Default Authentication Server in the Authentication Portal 394
Automatically Redirect Users to the Authentication Portal 394
Use a Custom Default Start Page 395
Set Management Session Timeouts 395
About Single Sign-On (SSO) 396
The WatchGuard SSO Solution 396
Example Network Configurations for SSO 398
Before You Begin 400
Set Up SSO 400
Install the WatchGuard Single Sign-On (SSO) Agent 400
Configure the SSO Agent 402
Use Telnet to Debug the SSO Agent 409
Install the WatchGuard Single Sign-On (SSO) Client 412
Enable Single Sign-On (SSO) 413
Install and Configure the Terminal Services Agent 417
About Single Sign-On for Terminal Services 418
Before You Begin 418
Install the Terminal Services Agent 419
Configure the Terminal Services Agent 419
Configure Terminal Services Settings 424
Authentication Server Types 426
About Third-Party Authentication Servers 426
Use a Backup Authentication Server 426
Configure Your XTM Device as an Authentication Server 427
Types of Firebox Authentication 427
Define a New User for Firebox Authentication 431
Define a New Group for Firebox Authentication 433
Configure RADIUS Server Authentication 434
Authentication Key 434
RADIUSAuthentication Methods 434
Before You Begin 434
Use RADIUSServer Authentication with Your XTM Device 434
How RADIUS Server Authentication Works 436
Configure RADIUS Server Authentication with Active Directory Users and Groups For
Mobile VPN Users 439
WPA and WPA2 Enterprise Authentication 442
Configure VASCO Server Authentication 442
Configure SecurID Authentication 445
Configure LDAP Authentication 447
About LDAP Optional Settings 449
Configure Active Directory Authentication 450
Add an Active Directory Authentication Domain and Server 450
About Active Directory Optional Settings 454
Edit an Existing Active Directory Domain 454
xvi WatchGuard System Manager
User Guide xvii
Delete an Active Directory Domain 456
Find Your Active Directory Search Base 456
Change the Default Port for the Active Directory Server 457
Use Active Directory or LDAP Optional Settings 458
Before You Begin 458
Specify Active Directory or LDAP Optional Settings 459
Use a Local User Account for Authentication 463
Use Authorized Users and Groups in Policies 463
Define Users and Groups for Firebox Authentication 463
Define Users and Groups for Third-Party Authentication 463
Allow Unlimited Concurrent Login Sessions 465
Limit Login Sessions 465
Add Users and Groups to Policy Definitions 465
Policies 467
About Policies 467
Packet Filter and Proxy Policies 467
Add Policies to Your XTM device 468
About Policy Manager 468
Open Policy Manager 470
About Policy Manager Views 471
Change Colors Used for Policy Manager Text 474
Find a Policy by Address, Port, or Protocol 476
About the Outgoing Policy 476
Add Policies to Your Configuration 477
Use Policy Checker to Find a Policy 477
See the List of Policy Templates 477
Add a Policy from the List of Templates 479
Add More than One Policy of the Same Type 481
See Template Details and Modify Policy Templates 481
Disable or Delete a Policy 482
About Policy Tags and Filters 483
Create and Apply Policy Tags 483
Remove Policy Tags From Policies 487
Modify Policy Tags 488
Create and Apply a Filter 488
Modify a Filter 490
Clone a Filter 491
About Aliases 493
Alias Members 493
Create an Alias 494
About Policy Precedence 500
Automatic Policy Order 500
Policy Specificity and Protocols 500
Traffic Rules 501
Firewall Actions 501
Schedules 502
Policy Types and Names 502
Set Precedence Manually 502
Create Schedules for XTM Device Actions 503
Set an Operating Schedule 504
About Custom Policies 505
Create or Edit a Custom Policy Template 506
Import and Export Custom Policy Templates 507
About Policy Properties 509
Policy Tab 509
Properties Tab 509
Advanced Tab 510
Proxy Settings 510
Set Access Rules for a Policy 510
Configure Policy-Based Routing 513
Set a Custom Idle Timeout 517
Set ICMP Error Handling 517
Apply NAT Rules 517
Set the Sticky Connection Duration for a Policy 518
Proxy Settings 519
About Proxy Policies and ALGs 519
xviii WatchGuard System Manager
User Guide xix
Proxy Configuration 520
Proxy and AV Alarms 520
About Proxy Actions 521
About Rules and Rulesets 527
Use Predefined Content Types 536
Add a Proxy Policy to Your Configuration 537
About the DNS-Proxy 539
Policy Tab 539
Properties Tab 539
Advanced Tab 540
Configure the Proxy Action 540
DNS-Proxy: General Settings 541
DNS-Proxy: OPcodes 542
DNS-Proxy: Query Types 544
DNS-Proxy: Query Names 546
About MX (Mail eXchange) Records 546
About the FTP-Proxy 549
Policy Tab 549
Properties Tab 549
Advanced Tab 550
Configure the Proxy Action 550
FTP-Proxy: General Settings 551
FTP-Proxy: Commands 553
FTP-Proxy: Content 554
FTP-Proxy: AntiVirus 554
About the H.323-ALG 556
VoIPComponents 556
ALGFunctions 556
Policy Tab 557
Properties Tab 557
Advanced Tab 557
Configure the Proxy Action 558
H.323-ALG: General Settings 558
H.323-ALG: Access Control 560
H.323-ALG: Denied Codecs 562
About the HTTP-Proxy 564
Policy Tab 564
Properties Tab 565
Advanced Tab 565
Configure the Proxy Action 566
HTTP Request: General Settings 567
HTTP Request: Request Methods 569
HTTP Request: URL Paths 571
HTTP Request: Header Fields 571
HTTP Request: Authorization 572
HTTP Response: General Settings 573
HTTP Response: Header Fields 574
HTTP Response: Content Types 575
HTTP Response: Cookies 577
HTTP Response: Body Content Types 578
HTTP-Proxy: Exceptions 578
HTTP-Proxy:WebBlocker 579
HTTP-Proxy: AntiVirus 580
HTTP-Proxy: Reputation Enabled Defense 581
HTTP-Proxy: Deny Message 582
Enable Windows Updates Through the HTTP-Proxy 583
Use a Caching Proxy Server 584
About the HTTPS-Proxy 586
Policy Tab 586
Properties Tab 587
Advanced Tab 587
Configure the Proxy Action 587
HTTPS-Proxy: General Settings 588
HTTPS-Proxy: Content Inspection 590
HTTPS-Proxy: Certificate Names 593
HTTPS-Proxy:WebBlocker 593
xx WatchGuard System Manager
/