User manual

The Enable Access Control checkbox enables/disables the entire access control
subsystem. This box must be checked for any access control operation to take place.
The Require User Authentication checkbox determines if users are asked for a user
name and password when attempting to access the web through the SnapGear unit.
The Default Action field defines the behavior when none of the settings positively allow
or block access. If changed to block by default, some definitions must be created
elsewhere in access control to allow some network traffic or no access is possible.
The Syslog Level controls the level of debug output that is logged to the system log. The
higher this is set to, the more verbose the output. For normal operation, this should be set
to 0 or very large logs and a noticable system slowdown might result. For normal
debugging, set Syslog Level to 1. Higher levels need only be turned on when so
directed by Secure Computing Technical support.
The Fast Web Mode allows the relatively slow software HTTP proxy to be bypassed
under certain conditions. This will result in faster web accesses by trading away the
informative error pages when sites are blocked. The conditions required for possible
bypass are:
1. There are no allow or deny web lists defined.
2. Webwasher content filtering is not enabled.
3. Web anti-virus is not enabled.
The Web Proxy Port controls the TCP port number that the access control HTTP proxy
listens on. Typically you will not need to change this number unless you wish to run
another service on the SnapGear unit at this port number.
172
Firewall