SonicWall has an implicit deny rule that blocks all traffic. To allow a specific web category or set of web categories, such as News, Search Engines etc we need to add a security rule that explicitly permits them. Security rules consist of three sections, match criterion, action, and additional actions. We need to match the Web categories to be allowed, allow access to them, and perform additional actions like displaying a block page for others that aren't allowed.
To allow only only certain web categories through the firewall on SonicOSX 7.0, we need to do the following
 NOTE: On SonicOSX 7.0, the HTTPS content filtering is no longer present. So, if HTTPS websites are to be allowed, we need Client DPI SSL and a corresponding decryption policy to inspect them.
Creating a Decryption Policy:
A decryption policy matches the traffic and the only two actions we can take are Decrypt and Bypass. With decryption, we get greater data visibility, which help us in performing better matches and applying the right security policy.



NOTE: Before an HTTP/HTTPS connection can be made, the end machine needs to perform DNS resolution of the URL. Since we have an implicit deny rule, we'll need to allow DNS traffic as well.To create the DNS related Security Policy



NOTE:Â This policy can also be created using the DNS protocol application signature, but Services is used in this example.To create the allow web category related Security Policy








