Previous Topic

Next Topic

Assigning Firewall Profiles to Application Groups

After you define Firewall objects and create Firewall Policies you can assign them to various Application Groups. Application Group is the basic building block in terms of the Profile assignment and it must include at least one application. Currently the monitored applications are executables.

In order to assign the rule to the application group you must switch the view to 'Application Groups' in your Configuration Editor:

Application groups view has three major panes:

Application groups

In this pane you can define the the names of the application groups. There are no restrictions on the names.

Application list

When you define the name for the application group you must assign the application(s) to it. One application group must include one or more applications.

You can define the applications within the application group by absolute or relative paths. The relative path uses the syntax similar to the syntax used in the Files Sandbox Objects definitions.

Example:

You can define MS Word as:

%DirOnSubKeyValue%\MACHINE\Software\Microsoft\Office\\Common\InstallRoot\\Path\\\winword.exe

Read it as: winword.exe located in the value of Path located in the subkey Common\InstallRoot which is the subkey of HKEY_LOCAL_MACHINE\Software\Microsoft\Office

Profile Assignment

Once the Application Group is defined and once it has actual applications defined you can assign this Application Group with the profile. When you click on Add New icon you will see the list of available predefined profiles to select from.

Note! At present it is possible to assign only one profile at a time.

See Also

Firewall Policies

Firewall Configuration Philosophy

Firewall Objects

Firewall Profiles