A: Application control is performed based on applications to which HTTPS web pages belong. Application control does not involve SSL decryption.
URL filtering is performed based on the URLs corresponding to HTTPS web pages. To use URL filtering to control HTTPS web pages, configure SSL decryption or run the https-filter enable command to configure encrypted traffic filtering.
1.Blocking access to Facebook is used as an example:
Use application control to block access to Facebook:
[sysname] security-policy
[sysname-policy-security] default action permit
[sysname-policy-security] rule name app_deny
[sysname-policy-security-rule-app_deny] application app Facebook
[sysname-policy-security-rule-app_deny] application app Facebook_Browsing
[sysname-policy-security-rule-app_deny] application app Facebook_Login
[sysname-policy-security-rule-app_deny] action deny
2.Use URL filtering to block access to Facebook:
[sysname] profile url-filter facebook_deny
[sysname-profile-url-filter-facebook_deny] add blacklist url www.facebook.com
[sysname-profile-url-filter-facebook_deny] https-filter enable
[sysname-profile-url-filter-facebook_deny] quit
[sysname] security-policy
[sysname-policy-security] default action permit
[sysname-policy-security] rule name url_deny
[sysname-policy-security-rule-url_deny] profile url-filter facebook_deny
[sysname-policy-security-rule-url_deny] action permit
![[Dr.WoW]Q&A: How can I Block HTTPS Website with Application Identification and Control?-2740995-1](static/image/smiley/default/handshake.gif)