Manual Chapter :
Creating Security Policies
Applies To:
Show Versions
F5 SSL Orchestrator
- 17.1.0
Creating Security Policies
To create a new security policy:
- SelectCreate Newand enter a name for your policy.
- For L3 Inbound/Application topology, select the policy type from theProviderlist.
- ClickAddto create a new security policy rule.
- Select a condition from the first dropdown list for which you want to configure the rule. Specify conditions, match type (match any/match all), operators (is) or (is not) that compares or negates the selected value, and choose the action (reject/allow/abort) for that traffic. Select a service chain and specify if SSL proxy traffic will be intercepted or bypassed. Use the+sign to add additional conditions and thexsign to remove any unwanted rule condition.Refer theUsing Conditions in Rulessection for recommended tips.
- SelectServer Certificates Status Checkcheckbox to add a new per-request policy agent for server certificate status and to allow administrators to select ignore/mask options and generate a blocking page for untrusted and expired server certificates.
- SelectProxy Connectif you want to add an upstream explicit proxy to your security rule chaining. You can add multiple proxy devices, or pool members, as necessary.
- ClickSave DraftorSave & Nextbefore you leave the screen.