
Label | Description |
|---|---|
Collect Statistics | |
Enable | Enable to have the Zyxel Device identify and display application traffic statistics in Traffic Statistics > Application Usage. All statistics are erased if you restart the Zyxel Device or click Flush Data in Security Statistics > App Patrol. |
Analyze All Traffic | Enable this to have the Zyxel Device identify applications in all traffic. Traffic is identified, but no action is taken. Use security policies to take action on matched traffic. Disable this to have the Zyxel Device identify applications only from traffic that matches security policies that have app patrol profiles applied. For example, if you create an app patrol profile and apply it to the LAN_Outgoing security policy, the Zyxel Device will only collect application statistics from traffic that matches the LAN_Outgoing security policy. |
Profile Management | |
Add | Click this to create a new profile. Select an entry and click Add to create a new entry after the selected entry. |
Edit | Select an entry and click Edit to open a screen where you can modify the entry’s settings. |
Remove | Select one or more entries and click Remove to delete the selected entry. |
Reference | Select an entry and click Reference to check which settings use the entry. |
Copy | You can create a new entry by copying an existing one to a new position, and then editing it. Select an existing policy and click Copy to display a field to type a number for where you want to put that entry, then press [ENTER] to copy the entry to the number that you typed. After copying it, edit it to change it from the one copied. |
Name | This displays the name of the profile created. |
Description | This displays the description of the App Patrol Profile. |
Reference | This displays the number of times an object reference is used in a profile. |
Action | Click this icon to go to a screen to apply the entry to a policy control rule. Go to the Security Policy > Policy Control screen to check the result. |
Signature Information | The following fields display information on the current signature set that the Zyxel Device is using. |
Current Version | This field displays the App Patrol signature set version number. |
Released Date | This field displays the date and time the set was released. |
Update Signatures | Click this link to go to the screen you can use to download signatures from the update server. |
Label | Description |
|---|---|
General Settings | |
Name | Type the name of the profile. You may use 1-31 alphanumeric characters, underscores(_), or dashes (-), but the first character cannot be a number. This value is case-sensitive. These are valid, unique profile names: • MyProfile • mYProfile • Mymy12_3-4 These are invalid profile names: • 1mYProfile • My Profile • MyProfile? • Whatalongprofilename123456789012 |
Description | Type a description for the profile rule to help identify the purpose of rule. You may use 1-31 alphanumeric characters, underscores (_), or dashes (-), but the first character cannot be a number. This value is case-sensitive. This field is optional. |
Allow only selected apps (with allowed actions) | Enable this to have the Zyxel Device drop packets from applications that are not included in this profile and send a TCP RST or ICMP host unreachable message to both the sender and receiver. |
Rejected unrecognized apps | Enable this to have the Zyxel Device drop packets from applications that are not recognized and send a TCP RST or ICMP host unreachable message to both the sender and receiver. |
Log rejected apps | Enable this to have the Zyxel Device generate a log when it rejects applications that are not included in this profile or are unrecognized. |
Application Management | |
Add | Click Add to create a new profile. You may select individual applications within each category. Type in the search box to display all associated entries. ![]() |
Remove | To remove one or more entries, select them and click Remove. The Zyxel Device confirms you want to remove it before doing so. |
Active | To turn one or more entries, select them and click Active. The Status light changes accordingly. |
Inactive | To turn off one or more entries, select them and click Inactive. The Status light changes accordingly. |
Log | Select whether to have the Zyxel Device generate a log (log), log and alert (log alert) or neither (no) by default when traffic matches a signature in the selected profiles. You may still edit individual profiles within the profile row. |
Action | Select the default action for all signatures in the selected profiles. You may still edit individual profiles within the profile row. • forward - the Zyxel Device routes packets that matches these signatures. • drop - the Zyxel Device silently drops packets that matches these signatures without sending a TCP RST or ICMP host unreachable message to both the sender and receiver. • reject - the Zyxel Device drops packets that matches these signatures and sends a TCP RST or ICMP host unreachable message to both the sender and receiver. |
Priority | This field is a sequential value showing the number of the profile. The ordering of your profiles is important as profiles are applied in sequence. |
Status | Set whether this entry is Active or Inactive. |
Category | This field displays the category type of the application. You may edit this for each entry. |
Application | This field displays the application name or numbers of applications included in the policy. You may edit this for each entry. |
Log | Select whether to have the Zyxel Device generate a log (log), log and alert (log alert) or neither (no) by default when traffic matches a signature in this category. |
Action | Select the default action for all signatures in this category. forward - the Zyxel Device routes packets that matches these signatures. drop - the Zyxel Device silently drops packets that matches these signatures without notification. reject - the Zyxel Device drops packets that matches these signatures and sends notification. |
Apply | Click Apply to save your settings to the Zyxel Device. |
Cancel | Click Cancel to return to the profile summary page without saving any changes. |
profile name | application | action | log |
|---|---|---|---|
BlockMedia | TikTok | Reject | Log Alert |
to | from | log | app patrol profile |
|---|---|---|---|
WAN | LAN | By Profile | BlockMedia |