Hi all. UTM 425 running 9.2. I have a situation where a group of PC's needs absolutely no access to the Internet, aside from a very short whitelist. I created a Web Filter Profile and a Filter Action that is locked down completely, with only one entry in the whitelist. But, after testing via the "Policy Test", I realized that this filter was still applying the global exceptions defined in "Filtering Options". Is there not a way to create a content filter that absolutely has no exceptions?
Right now, I'm doing it via the packet filter method where I have this range allowed to access a group of DNS hosts, followed by a blanket deny on the same range.
As an aside, one other oddity I encountered was, in defining a Web Filter Profile, I attempted to put an IP range defined in Network Definitions into the "Allowed Networks" field. No go on that. It won't even drag and drop. So I created a network group in definitions and put the range into the group. I could drag and drop, but no filter action applied to the IP's in the range in the group. I had to manually add the IP's from that range to the group before it worked. Weird!
TIA,
Brian
This thread was automatically locked due to age.