Logo
Tech Note 2171: Policy Library

Policy Library

Technical Note 2171

Last Reviewed 20-Oct-2005
 Printer-friendly version

Summary

This tech note contains sample rules for use with the Mobility Policy Mangement module.

Instructions for Use

The zip archive Policies.zip contains the following sample rules, which can be imported to the Mobility console (and edited, if needed):

Disconnect ISAKMP.xml

Prevents ISAKMP traffic (port 500)

Disconnect LDAP.xml

Prevents LDAP traffic (port 389)

Disconnect MS Messenger.xml

Prevent MS Messenger traffic (MSMSGS.EXE)

Disconnect MS RPC.xml

Prevents MS RPC (remote procedure call) traffic (port 135)

Disconnect NetBIOS.xml

Prevents NetBIOS traffic (ports 137, 138, 139, and 445)

Disconnect Simple TCP Services.xml

Prevents Simple TCP Services traffic (TCPSVCS.EXE)

Disconnect SNMP.xml

Prevents traffic (SNMP.EXE)

Disconnect TIMESYNC.xml

Prevents Timesync traffic (port 123)

Disconnect Universal PnP.xml

Prevents Universal PnP traffic (ports 1900 and 5000)

To edit a sample rule, follow these steps:

  1. Download Policies.zip to your Mobility server, or to a machine with access to the server's web-based console (the file location is not important).

  2. Unzip the file to extract the sample rules (*.xml).

  3. Open the Mobility XE console and select Import... on the Rules tab.

  4. Select Browse... in the Policy Import dialog box and point to the file saved in step 2, then select Open. Specify additional rules, if you want them, then select OK.

  5. After importing a rule you may move or delete the original .xml file, since the rule is now stored in the Mobility warehouse.

The rules should now be listed on the Rules tab, available for use in any rule set. See tech note 2154 for more information on creating and using rules and rule sets.

Related Information

2154

Using Mobility Policy Management — The Basics

2138

Reining in NetBIOS Traffic

2192

Policy Management Example — Selective VPN

2171

Policy Library

9979

NetMotion Mobility Technical Notes

Please comment on this technical note.