SonicOS 7.1 Rules and Policies for Policy Mode
- SonicOS 7.1 Rules and Policies
- Overview
- Settings
- Security Policy
- NAT Policy
- About NAT in SonicOS
- About NAT Load Balancing
- About NAT64
- About FQDN-based NAT
- About Source MAC Address Override
- Viewing NAT Policy Entries
- Adding or Editing NAT or NAT64 Rule Policies
- Deleting NAT Policies
- Creating NAT Rule Policies: Examples
- Creating a One-to-One NAT Policy for Inbound Traffic
- Creating a One-to-One NAT Policy for Outbound Traffic
- Inbound Port Address Translation via One-to-One NAT Policy
- Inbound Port Address Translation via WAN IP Address
- Creating a Many-to-One NAT Policy
- Creating a Many-to-Many NAT Policy
- Creating a NAT Load Balancing Policy for Two Web Servers
- Routing
- Decryption Policy
- DoS Policy
- DNS Policy
- Endpoint Policy
- Shadow
- SonicWall Support
Creating Custom Botnet Lists
Address Object | Name of the address object or address group object. |
Botnet | Icon indicating whether the entry was defined as a Botnet when created. A black circle indicates a Botnet, a white circle a non-Botnet. |
Comments | Any comments you added about the entry. |
Configure | Contains Edit and Delete icons for the entry. |
Total | Displays the number of entries in the Custom Botnet List. |
An IP address can be wrongly marked as Botnet. This kind of misclassification can cause incorrect/unwanted filtering of an IP address. Having a custom Botnet list can solve this problem by overriding the Botnet tag for a particular IP address.
Creating a Custom Botnet List
For the firewall to use the custom Botnet list, you must enable it as described in Configuring Botnet Filters.
To create a custom Botnet list:
- Navigate to the POLICY | Rules and Policies > Settings > Botnet | Custom Botnet List.
- Click +Add. The Add Address Location dialog displays.
- Select an IP address object or create a new address object from the A Botnet IP Address list:
An address object cannot overlap any other address objects in the custom country list. Different address objects, however, can have the same country ID.
-
Create new address object… – the Add Address Location dialog displays.
- Create a new address location. Allowed types are:
- Host
- Range
- Network
- A group of any combination of the first three types
- Create a new address location. Allowed types are:
All other types are disallowed types and cannot be added to the custom Botnet list.
-
Create new address group… – the Add Address Location dialog displays.
- Create a new address object.
-
Already defined address object or address group
- If this address object is a known Botnet, select the Botnet checkbox.
- Optionally, add a comment in the Comment field.
- Click Save.
Editing Custom Botnet List Entries
To edit a custom Botnet list entry
- In the Custom Botnet List table, click the Edit icon in the Configure column for the entry to be edited. The Add Address Locationdialog displays the entry.
- Make your changes.
- Click Save.
The Custom Botnet List table is updated.
Was This Article Helpful?
Help us to improve our support portal