1 Click Block connections to/from Botnet Command and Control Servers to block all servers that are designated as Botnet servers. Use the exclusion list that follows to exclude approved IP addresses.
Select one of the two modes of Botnet Filtering:
• All — All connections to and from the specified countries are blocked.
• Firewall Rule-Based — Only connections that match an access rule configured on the appliance will be blocked.
2 Click Block all connections to public IPs if BOTNET DB is not downloaded to drop all connections to public IP addresses if the Botnet database is not downloaded.
3 Select Enable logging to log Botnet Filter-related events.
4 (Optional) You can configure an exclusion list to all connections to approved IP addresses. To do so, go to the Botnet Exclusion Object drop-down menu and select an address object or address group.