User Guide

OmniAccess SafeGuard OS Administration Guide
96
Chapter 2: Accessing and Managing the System
Protect – The system monitors and enforces policies on user-defined and malware
policy controls.
For the SafeGuard Controller
For the SafeGuard Controller, device protection mode is set per port-pair. The global form
of the protection-mode command will set all ports to the specified configuration. Use the
protection-mode command in Global or Interface Configuration submode.
protection-mode mode all
Table 14 Supported Protection Modes
Protection
Mode
When Used SafeGuard Controller SafeGuard Switch
Pass-thru
Mode
First time set up
and cabling
Acts as a transparent
bridge. All security
functionality is
bypassed.
Acts as a standard L2/
L3 switch. All security
functionality is
bypassed.
Monitor Mode
Testing and
trials
Authentication, captive portal, visualization,
malware detection and protection and user-
based policy checking is applied to all data
traffic, but enforcement is ignored.
Protect Mode
Typical
Deployment
Authentication, captive portal, visualization,
malware detection and protection and user-
based policy checking is applied to all data
traffic, and actively enforced.
Syntax Description mode The protection mode of the port-pair. Valid
values are:
pass-thru – (Default) No protection
policies are employed.
monitor – The system monitors for policy
visualization based on user-defined
policy controls, however no
enforcement actions are taken.
protect – The system monitors and
enforces policies on user-defined and
malware policy controls.
all Indicates that the mode parameter applies
to all interfaces.
The all keyword applies only in the Global
Configuration mode. In Interface
Configuration mode, it does not apply.