The App Redirect access rule rewrites the destination IP address and forwards the traffic to service running on the CloudGen Firewall. For example, you can use an app redirect rule transparently redirect all web traffic over the HTTP proxy service.
Create an App Redirect Access Rule
- Go to CONFIGURATION > Configuration Tree > Box > Assigned Services > Firewall > Forwarding Rules.
- Click Lock.
- Either click the plus icon (+) in the top right of the rule set, or right-click the rule set and select New > Rule.
- Select App Redirect as the action.
- Enter a Name for the rule. For example,
Transparent-Proxy-LAN2INTERNET
. - Specify the following settings that must be matched by the traffic to be handled by the access rule:
- Source – The source addresses of the traffic.
- Destination – The destination addresses of the traffic.
- Service – Select a service object, or select Any for this rule to match for all services.
- Enter the Redirection IP address and optional port as the Local Address. For example,
127.0.0.9:3128
for the HTTP proxy service. - Click OK.
- Drag and drop the access rule so that it is the first rule that matches the traffic that you want it to forward. Ensure that the rule is located above the BLOCKALL rule; rules located below the BLOCKALL rule are never executed.
- Click Send Changes and Activate.
Additional Matching Criteria
- Authenticated User – For more information, see User Objects.
Additional Policies
- IPS Policy – For more information, see Intrusion Prevention System (IPS).
- Application Control – For more information, see Application Control.
- SSL Inspection Policy – For more information, see SSL Inspection in the Firewall.
- Schedule Objects – For more information, see Schedule Objects.
- QoS Band (Fwd) or QoS Band (Reply) – For more information, see Traffic Shaping.