Trend Micro™ Network VirusWall™ Enforcer 2500 Administrator’s Guide
1
-
44
Sample Policy 3: Catchall
When you create this policy, do not select
Enable user authentication
in
Step 2
and
ensure that settings are configured to
Any
or
All
. Select all of the
Services
from
Policy 1 and Policy 2. This policy should always remain in last priority due to the
first-match rule. Any policy that has a lower priority than this policy never applies to
endpoints.
F
IGURE
1-13.
Example of incorrect prioritization resulting in a policy that
never applies to endpoints
The second policy in this example never applies to endpoints since the higher priority
policy’s Trigger settings are any source, any destination, and all TCP/UDP ports.
Network traffic that passes through Network VirusWall Enforcer 2500 always
matches the higher priority policy. Since Network VirusWall Enforcer applies only
one policy to each endpoint, once a match is made, no additional policies are applied.