6.2 Configuring URL-Based Access Rules

URL-based access rules apply to users accessing Web content through the HTTP or FTP proxy. If you enabled the HTTP proxy for all private interfaces during the installation, the simplest way to allow users to access the HTTP proxy is to create a rule that allows any source on the private network to access any destination.

This section has the following information:

6.2.1 Configuring a URL-Based Access Rule for FTP or HTTP Proxy

  1. Log in to iManager.

  2. Select Novell BorderManager > Access Rules.

  3. Browse to and select the BorderManager server or container that you want to configure, then click OK.

  4. Click New, then select HTTP if you want to configure access rules for HTTP or select FTP if you want to configure access rules for FTP.

  5. Specify a name for the rule in the Name field.

  6. Specify a brief description of the rule in the Description field.

  7. Click New in the Condition Group section, then select URL from the list.

  8. Select a value for the Comparison field

  9. Specify a value for the Value field.

  10. Specify whether to set the action to Allow or Deny.

  11. (Optional) If you want the server to record all access attempts that match the rule, click Enable Rule Hit Logging.

    Logging access attempts can affect server performance; however, we recommend that you enable this option so to detect unauthorized activity.

  12. Click OK.

  13. Click Apply Changes to save the changes.

6.2.2 Modifying the Existing Access Rules as URL-based Access Rules

You can modify the existing HTTP and FTP access rules into URL-based access rules as follows:

  1. Log in to iManager.

  2. Select Novell BorderManager > Access Rules.

  3. Browse to and select the BorderManager server or container that you want to configure, then click OK.

  4. Select the HTTP or the FTP access-rule that you want to change into a URL-based rule.

  5. Delete Origin Server Port, Destination: Host IP addresses and Destination: DNS Hostname from the Condition Group section.

  6. Select Step 7 to Step 13 in Section 6.2.1, Configuring a URL-Based Access Rule for FTP or HTTP Proxy.

6.2.3 Modifying the Existing URL-Based Access Rules

To change the existing URL-based access rules into FTP or HTTP access rules, follow the steps given below:

  1. Log in to iManager.

  2. Select Novell BorderManager > Access Rules.

  3. Browse to and select the BorderManager server or container that you want to configure, then click OK.

  4. Select the URL-based access rule that you want to modify.

  5. Delete URL from the Condition Group section.

  6. Select Step 5 to Step 13 in Section 6.1, Configuring a Rule to Allow Access through an Application Proxy.