Step-by-Step WFilter Setup Guide for Enterprise Networks

Written by

in

WFilter is an enterprise-grade internet monitoring and content filtering software designed to manage network traffic from a single centralized computer. Instead of installing software on every individual device, you deploy WFilter at a critical juncture in your local network to monitor, restrict, or block websites and applications across all connected users. 1. Choose a Deployment Mode

Before configuring blocking rules, WFilter must be deployed so that it can see the network traffic. You have two main installation options:

Pass-by Mode (Recommended): The computer running WFilter connects to a managed switch via a configured port mirroring (SPAN) port. In this mode, WFilter analyzes copies of network packets and terminates unauthorized TCP connections by injecting TCP Reset (RST) packets. It does not slow down network speed.

Pass-through Mode: The computer running WFilter acts as a physical gateway, a network proxy, or a network bridge equipped with two Network Interface Cards (NICs). All traffic physically passes through the machine, allowing direct blocking of both TCP and UDP traffic. 2. Block Websites Using WFilter

Once the software is tracking network clients, use the web management console to create website filtering rules:

Open Policy Settings: Navigate to Control Settings and choose Web Access Rules.

Block by Category: WFilter features a built-in database classifying millions of domains into over 60 categories (e.g., Streaming, Adult, Gambling, Social Media). Simply toggle a category to Block to restrict all domains tied to it.

Block Specific Blacklists: If a domain is unclassified, go to Category Settings -> Add websites to a category. Type the domain (e.g., example.com) and add it to a custom blocklist.

Create Whitelists (Strict Mode): For maximum restriction, you can block all web traffic by default and establish a “Website Only” whitelist, ensuring users can only visit pre-approved URLs. 3. Block Applications (Apps) Using WFilter

WFilter recognizes over 500 network protocols, allowing it to block standalone applications, mobile apps, and background software from communicating over the internet:

Open Application Control: In the management console, navigate to Application Access Rules or App Control.

Target Specific Categories: Filter out software by types, such as:

P2P & BitTorrent: Stop peer-to-peer file sharing and unauthorized downloads.

Instant Messengers: Block chat clients like WhatsApp, WeChat, or Skype.

Online Games & Streaming: Prevent online desktop/mobile games and video streaming software from stealing network bandwidth.

Apply by Account or Signature: For advanced setups, WFilter can block specific chat accounts or throttle bandwidth based on application signatures. 4. Assign Rules to Users

WFilter allows you to enforce rules dynamically rather than applying a blanket restriction to the entire building:

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *

More posts