3.7. ApplicationRuleSet
Description
An Application Rule Set contains a list of Application Rules and some settings and can be used by
one or more IP rules/IP Policies to configure Application Control on the traffic matching those IP
Rules/IP Policies.
Properties
Name Specifies a symbolic name for the Profile.
(Identifier)
DefaultAction Default action if nothing in the rule list matches.
(Default: Deny)
UseCustomLimits Use custom limits for unclassified traffic in this
ruleset instead of the default limits specified in the
advanced settings. (Default: No)
MaxUnclassifiedPackets Maximum number of packets in one direction on a
connection before the application will be forced to
unknown. (Default: 5)
MaxUnclassifiedBytes Maximum number of bytes transfered in one
direction on a connection before the application
will be forced to unknown. (Default: 7500)
StrictHTTP Handle plain http more strictly to avoid leaking
generic http services when only specific http
services should be allowed. (Default: Yes)
Comments Text describing the current object. (Optional)
3.7.1. ApplicationRule
Description
An application rule specifies what action to perform on applications that matches the specified
filter criteria.
Properties
Name Specifies a symbolic name for the Profile.
Action Action for matched application. (Default: Allow)
AppFilter Application filter.
ApplicationContent Extended logging and policy for application
attributes. (Default: [])
UserAuthGroups Groups and user names that belong to this object.
(Optional)
ForwardChain Specifies one or more pipes to be used for forward
Chapter 3: Configuration Reference
128