WAF: How to Configure URL Whitelisting on WAF?

Description

How to Configure URL White Listing on WAF Appliance,

How WAF can be used to limit access to certain URL’s with in an app server and block everything else.

1] URL White Listing.

 

Cause

How to Configure URL Whitelisting on WAF?

Here are the examples how to configure below doamins on WAF Path Uri’s allowed.

Ex: www.mydomain.com/abc and www.mydomain.com/allowed

 

Resolution

How to configure URL Whitelisting on Web Application Firewall using custom rule feature of WAF, which requires the WAF Licensing to use this feature.

1) URL whitelisting can be achieved using WAF custom rules.

Configuration steps as below.

Step 1: Creating custom Rule for URL's:

  1. Login to the SonicWall WAF Management
  2. Go to ‘Web Security -> Custom Rules’ and follow the instructions as mentioned in the screenshots

 

Image

Image

Image

Image

  1. Add a rule chain with action ‘Disable/Detect/Prevent’ for the URI
  2. Before/After creating the custom rule, enable the ‘Enable Custom Rules’ and apply settings.
  3. Access the WebApp (created using the same URI), it will apply the custom rule with defined action.

 

 

 

Related Articles

  • SonicOS 8.1.0 FAQ
    Read More
  • SonicWall GEN8 TZs and GEN8 NSas Settings Migration
    Read More
  • Getting started with SonicWall firewalls
    Read More
not finding your answers?