Defining Application Sets

In order to manage the Internet traffic, i.e. the connection from a site/subnet in your private network to any application, the first step consists in creating collections of applications (application sets) based on the SaaS dictionary or on Protocol and Port.

Warning: for system performance reasons, do not define more than 15 Application Sets.

In the current Use Case, 5 application sets are created: Business, Communication, Marketing, Development and Call Center. Default Internet contains all the other applications.

Define the Business application set

1 Click Add Application Set in the top right corner of the Internet Access Control Lists window.
2 Type 'Business' as the Name of the application set.
3 From the list of SaaS Applications, select 'Salesforce'. The listed applications correspond to existing SaaS applications that were created from the SaaS dictionary. They are associated with subnet information and identified through the "(identification on first packet)" label at the end of their respective descriptions.

Note that you can find a specific application through the Search fields.

Note: Each application can only belong to one application set.

4 Click Save Changes to validate.

Define the Communication, Marketing and Development application sets

Proceed exactly as for the previous Business application set:

Communication: Communication - Social Network (2 application sets)
Marketing: Marketing
Development: Development

Define the Call Center application set

This application set is based on Protocol and Port.

1 Click Add Application Set in the top right corner of the Internet Access Control Lists window.
2 Type 'Call Center' as the Name of the application set.
3 Select the Port Range option and click Add Port-Based App.
4 From the Protocol list, select 'UDP' and enter '255;300' as Ports.
5 Define the parameters of the second application. From the Protocol list, select 'TCP' and enter * as Port (all the available ports are taken into account).
6 Click Save Changes to validate.

Modifying or deleting an Application Set

In the Internet Access Control Lists window:

Click any Application Set name to edit its configuration. Modify any values and click Save Changes.
You may also click any Application Set name and use the Delete Application Set button.

After you have defined your application sets, you must apply Internet Access Policies to them.