Endpoint Protection

 View Only
  • 1.  Rule not propagating

    Posted Jan 28, 2011 06:30 PM

    Have added rules to firewall policy at SEP console and they are not being enforced. No errors we can detect. Create a rule in firewall policy for a specific client/group and either update content or go to client and update policy but rule never seems to be in affect. Have tried on 3 different machines.

    Ideas?

    Average Joe



  • 2.  RE: Rule not propagating

    Posted Jan 29, 2011 06:32 AM

    1. Is the  firewall  policy enabled?

    2. Are the  clients communicating with SEPM ( Green dot).

    3. Do the  clients  have  NTP installed?

     

    Also, would like to know, HOW DO YOU KNOW THAT RULES ARE NOT GETTING APPLIED?

     

    Also, kindly see, what control mode is cnfigured?

    The following shows the relationship between the client user’s control level and the user’s interaction regarding firewall rules:

    • In Server Control the client receives server rules, but the user cannot view them. The user cannot create client rules.
    • In Mixed Control, the client receives server rules and the user can view those rules in the Firewall Rules dialog box. The user can also create rules that are merged with existing rules. However, client rules go below the blue line and have a lesser priority.
    • In Client Control, the client has full control. A best practice is to use caution when giving your users mixed or client control.


    For clients in mixed control, the firewall processes server rules and client rules in a particular order. Server rules with high priority levels are processed first. Client rules are processed second, and server rules with a lower priority are processed last.
    Use caution when setting a client to mixed control, because the user can create a client rule that allows all traffic, and this rule overrides all server rules below the blue line.