User`s guide

2.12 FTP Policy Configuration
15
It is recommended not to require user authentication in this rule. This prevents from
redirecting unauthenticated users’ browser to the authentication page before showing the
information that the page is blocked.
User authentication for accessing Websites
The last optional restriction is user authentication while accessing Web pages. To enable this
feature, use the corresponding option under Users and Groups Users, the Authentication
Options tab.
User authentication is performed within redirection to the Kerio Control web interface’s
authentication page. It is necessary that the web interface is enabled and all its parameters
set correctly (refer to chapter 2.8). Upon entering a valid username and password, the browser
will be redirected to the solicited page.
2.12 FTP Policy Configuration
Requirements
FTP usage will be limited by the following restrictions:
transmission of music files in the MP3 format will be denied
transmission of video files (
*
.AVI) will be denied within working hours
uploads (storing files at FTP servers) will be denied protection of important
company information
FTP restrictions specified by predefined rules
Go to Configuration Content Filtering FTP Policy to set FTP limitations. The following
rules are predefined rules and can be used for all intended restrictions:
Rules Forbid *.mpg, *.mp3 and *.mpeg files and Forbid upload are ready to use.
Modify the Forbid *.avi files rule by going to the Advanced tab and setting the time
when the rule is valid in the Working hours range (see chapter 2.10).
FTP server in local network
?In the following example, we intend to enable the local FTP server from the Internet. The
Forbid upload rule denies even upload to this server which is not always desirable. For this
reason we must add a rule that would enable upload to this server before the Forbid upload
rule:
On the General tab set the following condition: “if any user acesses FTP server
192.168.1.10, then allow.”
On the Advanced tab, set the operation type to Upload and use the wildcard for any
file (
*
).