📝 Section Review: Security Policies
اہم نکاتKey TakeawaysKey Takeaways
- ویب پالیسیز کیٹیگری اور URL سے فلٹر کرتی ہیں؛ activate کرنے کے لیے انہیں فائر وال رول سے جوڑیں۔Web policies category aur URL se filter karti hain; activate karne ke liye inhein firewall rule se jorein.Web policies filter by category and URL; attach them to a firewall rule to activate.
- پوری ویب فلٹرنگ کے لیے HTTPS ٹریفک کو TLS انسپیکشن چاہیے؛ ورنہ صرف ڈومین فلٹر ہوتا ہے۔Poori web filtering ke liye HTTPS traffic ko TLS inspection chahiye; warna sirf domain filter hota hai.HTTPS traffic needs TLS inspection for full web filtering; otherwise only the domain is filtered.
- ایپلیکیشن کنٹرول ایپلیکیشنز (گیمز، P2P) کو random پورٹس پر بھی بلاک کرتا ہے۔Application control applications (games, P2P) ko random ports par bhi block karta hai.Application control blocks applications (games, P2P) even on random ports.
- IPS پہچانے گئے اٹیک سگنیچرز کو بلاک کرتا ہے؛ نئی پالیسیز کو detect mode میں شروع کریں تاکہ غلط بلاکس نہ ہوں۔IPS pehchane gaye attack signatures ko block karta hai; nayi policies ko detect mode mein shuru karein taake ghalat blocks na hon.IPS blocks known attack signatures; start new policies in detect mode to avoid false blocks.
- ایک فائر وال رول میں ویب، ایپلیکیشن کنٹرول اور IPS پالیسیز ایک ساتھ لگ سکتی ہیں۔Ek firewall rule mein web, application control aur IPS policies ek saath lag sakti hain.One firewall rule can carry web, application control, and IPS policies together.
خود جانچ (مشق)Self-Check (Practice)Self-Check (Practice)
یہ مشقی سوالات ہیں، امتحانی سوالات نہیں۔These are practice questions, not exam questions.These are practice questions, not exam questions.
❓ ویب پالیسی اور ایپلیکیشن کنٹرول میں فرق کیا ہے؟Web policy aur application control mein farq kya hai?What is the difference between a web policy and application control?
ویب پالیسی ویب سائٹس کو کیٹیگری اور URL سے فلٹر کرتی ہے؛ ایپلیکیشن کنٹرول ایپلیکیشنز کو پورٹ یا پروٹوکول کی پرواہ کیے بغیر پہچانتا اور بلاک کرتا ہے۔Web policy websites ko category aur URL se filter karti hai; application control applications ko port ya protocol ki parwah kiye baghair pehchanta aur block karta hai.A web policy filters websites by category and URL; application control identifies and blocks applications regardless of port or protocol.
❓ ویب پالیسی بنائی مگر کچھ فلٹر نہیں ہو رہا۔ کیوں؟Web policy banayi magar kuch filter nahi ho raha. Kyun?You created a web policy but nothing is filtered. Why?
فائر وال رول ایڈیٹ کر کے پالیسی attach کریں۔ پالیسیز رول سے link ہوئے بغیر کچھ نہیں کرتیں۔Firewall rule edit kar ke policy attach karein. Policies rule se link hue baghair kuch nahi kartin.Edit the firewall rule and attach the policy. Policies do nothing until linked to a rule.
❓ IPS فائر وال رول کے علاوہ کیا ایڈ کرتا ہے؟IPS firewall rule ke ilawa kya add karta hai?What does IPS add beyond a firewall rule?
IPS ٹریفک میں پہچانے گئے اٹیک سگنیچرز (مثلاً SQL injection) کو پہچانتا اور بلاک کرتا ہے۔ عام فائر وال رول صرف IP، پورٹ اور زون سے فلٹر کرتا ہے۔IPS traffic mein pehchane gaye attack signatures (masalan SQL injection) ko pehchanta aur block karta hai. Aam firewall rule sirf IP, port aur zone se filter karta hai.IPS detects and blocks known attack signatures (e.g. SQL injection) in traffic. A plain firewall rule only filters by IP, port, and zone.