User guide

Chapter 11: Protecting Your Network From Attacks
152 WatchGuard Firebox System
Creating exceptions to the Blocked Sites list
A blocked site exception is a host that is not added to the list of
automatically blocked sites regardless of whether it fulfills criteria that
would otherwise add it to the list. The site can still be blocked according
to the Firebox configuration, but it will not be automatically blocked for
any reason.
From Policy Manager:
1 Select Setup => Blocked Sites Exceptions.
The Blocked Sites Exceptions dialog box appears.
2 Click Add.
3 Enter the IP address of the site for which you want to create an
exception. Click OK.
4 Click OK to close the Blocked Sites Exceptions dialog box.
To remove an exception, select the IP address of the site to remove. Click
Remove.
Changing the auto-block duration
From the Blocked Sites dialog box, either type or use the scroll control to
change the duration, in minutes, that the firewall automatically blocks
suspect sites. Duration can range from 1 to 32,000 minutes (about 22
days).
Logging and notification for blocked sites
From the Blocked Sites dialog box:
1 Click Logging.
The Logging and Notification dialog box appears.
2 In the Category list, click Blocked Sites.
3 Modify the logging and notification parameters according to your
security policy preferences.
For detailed instructions, see “Customizing Logging and Notification by Service or
Option” on page 185.