User Guide

15-5
AsyncOS 9.1.2 for Cisco Email Security Appliances User Guide
Chapter 15 URL Filtering
Setting Up URL Filtering
Step 2 Select Add URL List or click a list to edit.
Be sure all URLs that you want to globally whitelist are in a single list. You can select only one global
whitelist for URL filtering.
Step 3 Create and submit the URL list.
To view a list of supported URL formats, enter a semicolon (;) into the URLs box and click Submit.
Then click the more... link that appears.
Each URL, domain, or IP address can be on a separate line, or separate each with a comma.
Step 4 Commit your changes.
What To Do Next
To designate a URL list as the global whitelist, see Enable URL Filtering, page 15-2.
To designate a URL list as the whitelist for a specific condition (rule) or action in a content or
message filter, see Taking Action Based on the Reputation or Category of URLs in Messages,
page 15-7 and Content Filter Actions, page 11-9. For message filters, see also URL Category Rule,
page 9-47 and URL Category Actions, page 9-74.
Related Topics
Importing a URL List, page 15-5
Importing a URL List
You can import a URL list to use as a whitelist for URL filtering.
Procedure
Step 1 Create the text file to import:
The first line must be the name of the URL list.
Each URL must be on a separate line.
Step 2 Upload the file to the /configuration directory on the appliance.
Step 3 Use the urllistconfig > new command in the command-line interface.
Cisco Web Security Proxy End User Notification Page
If an end user clicks on a malicious URL rewritten by an Outbreak Filter or Policy (using Content or
Message Filters), the Cisco Web Security proxy displays a Cisco branded notification page to the end
user in the web browser. This page notifies that the site is malicious and access to it has been blocked.
You can customize the appearance of this notification page and display your organization's branding
such as company logo, contact information, and so on. See Customizing the Appearance of End User
Notification Page, page 15-6.
Keep in mind that, when an end user clicks on a URL rewritten using Outbreak Filter, the notification
page is displayed for 10 seconds and then redirected to the to the Cisco Web Security proxy (Cisco
branded) for click-time evaluation.