Policy Configuration : Configuring Access Rules

Match Object Type Reference
The following table describes the supported match object types.
 
Application Categories – select the category from a pull-down list of application categories
Application Categories – see above;
Application – select the specific application from the pull-down list
Application Categories – see above;
Application – see above;
Application Signature – select the specific signature from the pull-down list
There are 4 additional, optional parameters that can be set: Offset (describes from what byte in packet payload we should start matching the pattern – starts with 1; helps minimize false positives in matching), Depth (describes at what byte in the packet payload we should stop matching the pattern – starts with 1), Payload Size – Minimum and Maximum size of data in a packet.
Email Size – the number of bytes in the email
Command – the FTP command, such as ABORT, DELETE, GET, PASSWORD, RESTART, QUIT, SIZE. Type HELP for the complete list of commands.
Command (see above);
Argument – a value you type in, such as the filename to GET/PUT or the directory name used with MKDIR
Custom Header Name – Specify a custom header name.
Custom Header Name – Specify a custom header name.
Custom Header Name – Specify the MIME header name to match.
Browser – Specify the browser type; choose from MSIE, Netscape, Firefox, Safari, Chrome
IDP Categories – choose from the a pull-down list of IPS attack categories, including ACTIVEX, EXPLOIT, JAVA, LDAP, MEDIA-PLAYERS, SQL-INJECTION, WEB-ATTACKS, and others
IDP Category – (see above); IDP Signature – choose signatures from any IDP Category