Skip to main content

Welcome to Skyhigh Security!

Skyhigh Security

Web Filtering Feature Configurations

The following tables list and describe the options that are used to configure settings for the feature configurations grouped under Web Filtering in the list of feature configurations.

You can access this list on the Feature Config page of the user interface.
 

Extended List

Options for configuring the Extended List settings

Option Description
Add Extended List Allows you to fill URLs in an additional list, referred to as Extended List, to include them in the filtering process.

For information about how to work with this option, see Configure an Extended List.

Cloud Settings

Options for configuring the settings of the filtering process

Option Description
Treat problems with connections to the cloud as errors When selected, problems arising on a connection from Secure Web Gateway to the Global Threat Intelligence (GTI) server, where filtering information is retrieved from, are logged as errors.
Treat invalid URLs as errors When selected, invalid URLs are logged as errors.
Do a backward lookup also for private IP addresses When selected, DNS lookups are performed to find the domain names that correspond to private IP addresses. The domain names are then used in the filtering process.

Enabling this option can lead to a lower performance.

GTI Settings

Options for configuring settings that control the behavior of the Global Threat Intelligence (GTI) service

Option Description
Search the CGI parameters for rating When selected, Common Gateway Interface (CGI) parameters submitted with a URL are searched for and included in the rating that is performed during the filtering process.

CGI parameters in a URL trigger scripts and programs when a URL is submitted to access a website.

Their rating affects the overall rating of the URL.

Enabling this option can lead to a lower performance.
Search for and rate embedded URLs (checking embedded URLs can reduce performance) When selected, embedded URLs are searched for and included in the rating. Their rating affects the rating of the embedding URLs.

Enabling this option can lead to a lower performance.
Do a forward DNS lookup to categorize URLs When selected, a DNS lookup is performed to find the IP addresses that correspond to the domain names in URLs. The IP addresses are then used to categorize URLs.
Do a backward DNS lookup for unrated IP-based URLs When selected, a DNS lookup is performed to find the domain names that correspond to the IP addresses submitted with URLs that could not be rated.

The domain names are then included in the rating.
Detect URLs based on built-in keywords When selected, built-in keywords are included in the search for URLs.
Enable the Dynamic Content Classifier if GTI web categorization yields no result When selected, the Dynamic Content Classifier is used to categorize URLs that the Global Threat Intelligence (GTI) service could not find categories for.
  • Was this article helpful?