This article describes how to configure firewall rule using URL Filtering to block certain websites (criminal/pornography)

 

Prerequisites

  1. Versa Director installed and configured.
  2. NGFW (Next Generation Firewall ) services should be enabled on the Versa FlexVNF CPE
  3. To add NGFW service on Versa FlexVNF click here

 

Configuration

  1. Login into the Versa Director and navigate to the Configuration >Templates
  2. Edit the Template associated with the Versa FlexVNF CPE by clicking on it

 

  1. On the branch template navigate to Configuration > Services > Next Gen Firewall > Security > Profiles > click on URL Filtering

 

 

  1. Click on + to create new URL filtering profile
  2. Edit URL Filter window will pop-up
  • Provide a Name to the Profile
  • Click on Category Based Action
  • Click + to create Category Based Action

 

 

  1. Add Category Based Action will pop up fill in the details
  • Provide a name to the action
  • Select Action as block
  • In the section Predefined Categories click on + and select the list of pornography and criminal site categories in the Predefined Category list as shown in below image

 

 

  1. Click ok 

 

 

  1. And Click ok

 

 

  1. Navigate to Security > Policies and click on + to add new Policy (if default-policy is not present)
  2. Click on Rules

 

 

  1. Click on + to add a new rule
  2. Pop-up window is opened to Add Rule 

 

 

 

  1. In the Add Rule window in the General tab provide the name for the rule

 

 

  1. Then click on Enforce tab. Rest of the tabs (Source/Destination, Headers/Schedule, Applications/URL, users/Groups are not required to be edited in this use case)
  2. In the Actions section select Apply Security Profile
  3. Select URL Filtering option and select from Drop-Down the URL Filtering Profile which we created earlier in this article.

 

 

  1. Click OK to complete the configuration.
  2. Since we have done the configuration in Template mode, commit the template to the branch/branches where you want to apply this rule.