To enable/disable the firewall, do the following:
- Login to Apex Central web console, go to Directories > Product Servers then click on the Apex One as a Service link.
Click the image to enlarge.
- Go to Agents > Global Agent Settings.
- Under the Firewall Settings section, tick Enable the Apex One Firewall.
Click the image to enlarge.
- On the System tab, go to the Certified Safe Software Settings section and select Enable the Certified Safe Software Service for Behavior Monitoring, Firewall, and antivirus scans.
- Click the Save button.
- Go back to the Apex Central web console, then go to Policies > Policy Management.
- Select the active policy for agents, go to Additional Service Settings, and then enable the Firewall Service (for Windows Desktops and/or Windows Servers).
Click the image to enlarge.
- Click Deploy.
- Agents > Firewall > Policies.
- To add a new policy, click Add.
- Type a name for the policy.
- Select a security level.
- Select the firewall features to use for the policy.
- Enable the local or global Certified Safe Software List.
Ensure that the Unauthorized Change Prevention Service and Certified Safe Software Services have been enabled before enabling this service.
- Under Exception, select the firewall policy exceptions. You can modify an existing policy exception or create a new one.
- Click Save.
- Go to Agents > Firewall > Profiles, then click Add.
- Tick Enable this profile to allow Apex One to deploy the profile to Security Agents.
- Type a name to identify the profile and an optional description.
- Select a policy for this profile.
- Specify the agent endpoints to which Apex One applies the policy. Select endpoints based on the following criteria.
- Select whether to grant users the privilege to change the firewall security level or edit a configurable list of exceptions to allow specified types of traffic.
- Click Save.
- Click Apply Profiles to Agents.
For more information, you may check Firewall Profiles.
- Go to the system tray > right-click the Apex One agent icon > Component Versions
- Verify the Policy Deployment status
- Right-click the Apex One agent icon > Open Security Agent Console.
- Verify if the Firewall is lit green, which indicates that the Firewall service is now active.