Use the Firewall Exception List to allow or deny different kinds of network
traffic based on endpoint port numbers and IP addresses. During an outbreak, Worry-Free Services applies the
exceptions to the Trend Micro policies that are automatically deployed to protect
your network.
For example, during an outbreak, you may choose to block all endpoint traffic,
including the HTTP port (port 80). However, if you still want to grant the blocked
endpoints
access to the Internet, you can add the web proxy server to the exception list.
Procedure
- Go to the Configure
Policy screen by performing one of the following:
-
Classic Mode: Go toand select a group. Click .
-
Advanced Mode: Go to. Click Add or click an existing policy.
-
- Click Windows.
- Go to .
- Select Advanced Mode and go to the Exception List section.
- To add an exception:
- Click Add.
- Type the name for the exception.
- Select the action to take on network traffics that meet the exception criteria.
- Select the traffic direction to apply the exception settings.
- Select the type of network protocol to apply the exception settings.
- Specify the endpoint ports to take the action.
- Specify the endpoint IP addresses to include in the exception.For example, if you choose to deny all inbound and outbound network traffic and specify the IP address for a single endpoint on the network, then any endpoint that applies this exception setting cannot send or receive data to or from that IP address.
-
All IP addresses
-
Single IP: Type an IPv4 or IPv6 address.
-
IP range: Type an IPv4 or IPv6 address range.
-
- Click OK.
- To view or edit an exception, click a name in the exception list.
- To reorder the exception list, drag an exception to a different row.
- To delete an exception, point to the exception and click in the last column of the list.