The following example demonstrates how to use an access control rule, together with a Matching URL resource and End Point Control zone, to prevent a Web-based application from displaying restricted data to untrusted devices.
Prevent a Web-based application from retrieving data using a Matching URL resource
In the AMC, navigate to Security Administration > Access Control.
Click the + (New) icon.
The Add Access Rule page displays.
In the Position field, type a number to specify the rule’s position in the access rule list.
Use the Action buttons to specify Deny.
This will deny users access to any resource that matches the pattern you specify in the next step.
Complete the information under Basic settings:
Leave User selected (so that the rule applies to users trying to access a resource).
The From field specifies the users to whom the rule applies. For this example, leave the value as Any user.
In the To field, click Edit to specify the target resource for this rule.
A Resources page displays.
Click the + (New) icon.
Select Matching URL. The Add Resource - Matching URL page displays.
Type a name for the resource. For example, Patient Records
.
In the URL field, type the URL address of your Web-based application. For example, www.patient-records.com
.
In the Path and query string matching area, select Custom from the Type of match list.
Click the + (New) icon.
Select Path element. Type reports.aspx
. (The path is not case-sensitive.)
Click OK.
Click the + (New) icon.
Select Query string. Type last_name=
. (The query string is case-sensitive.)
Click OK
Click Save.
The Add Resource - Matching URL closes.
Click Finish.
After you save and apply your changes, users who attempt to open the Patient Records resource (using a URL
that matches http://www.patient-records.com/reports.aspx?last_name=
) and who are
classified into the Untrusted zone will be denied access.