Views:

You can use the following methods to enable or disable the firewall on all or selected Security Agent endpoints.

To configure the Apex One Firewall service on all Security Agents using Global Agent Settings, do the following:
  1. Login to the Apex One Admin Console, and go to Agents > Global Agent Settings.
  2. On the Security Settings tab, go to the Firewall Settings section and change the settings to the preffered ones:
    For example:

    Firewall Settings Sample

  3. On the System tab, go to the Certified Safe Software Settings section and select Enable the Certified Safe Software Service for Behavior Monitoring, Firewall, and antivirus scans.
  4. Click Save.

Configure the Apex One Firewall service on selected Security Agents using Additional Service Settings.

  1. Login to Apex One Administrator Console, and go to Agents > Agent Management.
  2. Select the endpoint or domain group of the clients to configure.

    Additional Service Settings

    Click the image to enlarge.

  3. Click Settings > Additional Service Settings.
  4. Enable Windows desktop or server.

    Firewall Service

    Click the image to enlarge.

  5. Click Save.
 
Disabling the firewall service automatically disables all firewall policies on the selected agents.
 

To create a new policy and apply it to Security Agents, do the following:

  1. Login to the Apex One Administrator Console, and go to Agents > Firewall > Policies.
  2. To add a new policy, click Add.

    Firewall Settings

    Click the image to enlarge.

  3. Type a name for the policy.
  4. Select a security level.

    Security Level

  5. Select the firewall features to use for the policy.

    Firewall Features

  6. Enable the local or global Certified Safe Software List.

    Certified Secure Software List

    Click the image to enlarge.

     
    Ensure that the Unauthorized Change Prevention Service and Certified Safe Software Services have been enabled before enabling this service.
     
  7. Under Exception, select the firewall policy exceptions. You can modify an existing policy exception or create a new one.
  8. Click Save.

For more information, refer to Firewall Policies.

  1. Login to Apex One Administrator Console, then
  2. Go to Agents > Firewall > Profiles, then click Add.

    Firewall Profile

    Click the image to enlarge.

  3. Click Enable this profile to allow Apex One to deploy the profile to Security Agents.
  4. Type a name to identify the profile and an optional description.
  5. Select a policy for this profile.
  6. Specify the agent endpoints to which Apex One applies the policy. Select endpoints based on the following criteria.

    Criteria

    Click the image to enlarge.

  7. Select whether to grant users the privilege to change the firewall security level or edit a configurable list of exceptions to allow specified types of traffic.

    User Privileges

  8. Click Save.

For more information, you check Adding and Editing a Firewall Profile.