Starter content security policy
Clearswift Gateway includes an initial content security policy as a starting point for creating your own corporate policy. The starter policy contains basic policy routes, content rules, and policy references already applied.
Tell me about...
-
The protection that the starter policy provides
The starter policy includes a number of policy routes. Each route specifies two endpoints and a default action for traffic matched by the policy. Some routes also contain content rules.
Show me the routes, associated content rules, and what happens to the traffic on the routes:
Policy Route Default Action Content rules detect... Action if triggered Everyone and Trusted sites Allow traffic Everyone and Security Risk Block Traffic Virus Block Encrypted Data Block Spyware Callhome Block Tracking Cookie Block Executables including ActiveX Block uploading of Profanity Block Failure to process request or response Block Everyone and Inappropriate Sites Block Traffic Virus Block Encrypted Data Block Spyware Callhome Block Tracking Cookie Block Executables including ActiveX Block uploading of Profanity Block Failure to process request or response Block Everyone and Web Mail & Chat Allow Traffic except where a content rule is triggered Virus Block Spyware Callhome Block Encrypted Data Block Executables including ActiveX Block Outgoing PCI Content Continue Tracking Cookie Cookie Removed Uploading of Profanity Block Fail to process request or response Block Traffic that does not match another route Allow Traffic except where a content rule is triggered Virus Block Spyware Callhome Block Encrypted data Block Site associated with spyware Block Tracking Cookie Cookie removed Executables including ActiveX Block Failure to process request or response Block
How do I...
-
Adapt the starter policy to fit my organization's requirement?
For guidance on what aspects of the policy to adapt, and the steps you need to take, see the Adapting the Starter Policy topic.
-
View the default lexical expression lists?
To find out which terms are contained in the Confidential Material or PCI lexical expression lists, click Policy > Policy References > Lexical Expressions. The Lexical Expressions tab displays a list of the currently available lexical expression lists. See the Working with Lexical Expressions topic for more information.