This article applies to our On-Premise Appliance Filter and Firewall product only, not to Cloud.
Deep Packet Inspection (DPI) filtering, also called Layer 7 filtering, can block access to Applications and drop or rejectSSH, NTP, or gaming traffic. DPI filtering should be used in addition to Web Filter Policies that only filter HTTPS and HTTP traffic.
Important
Your Smoothwall must be licensed as a Firewall and have the Deep Packet Inspection module installed.
Create a Firewall rule for one or more Applications:
- Don’t Include anything for the Source IP addresses, Destination IP addresses, Services and Groups sections.
- For Inbound Interfaces, select All internal interfaces and select Add.
- For Outbound Interfaces, select All external interfaces and select Add.
- For Applications (Apps) you can see a list of Application Themes or select the + icon to see individual Applications within that Application Theme. Select the checkboxes next to any combination of Themes or Applications.
- Set the Action to Drop or Reject.