Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Refine Web Security Policies > Managing traffic based on file type > Enforcement based on file extension
Enforcement based on file extension
Web Security Help | Web Security Solutions | Version 7.8.x
Related topics:
When a user requests a URL in a permitted category for which file type blocking is enabled, Filtering Service checks the files associated with the URL to see if any of them has a file extension that is assigned to a blocked file type. If so, the request is blocked, and the user receives a block page that indicates that the request was blocked by file type.
If the file extension is not associated with a blocked file type, what happens next depends on your Web security solution:
*
Websense Web Security and Web Filter: The file is permitted.
*
Websense Web Security Gateway and Gateway Anywhere: The file is analyzed to determine its true file type, and permitted or blocked based on that analysis (see Enforcement based on file analysis).
Several predefined file types (groups of file extensions) are included with the product. These file type definitions are maintained in the Master Database, and may be changed as part of the Master Database update process.
You can filter using predefined file types, modify the existing file type definitions, or create new file types. You cannot, however, delete Websense-defined file types, or delete the file extensions associated with them.
Any of the file extensions associated with a Websense-defined file type can be added to a custom file type. The file extension is then filtered and logged according to the settings associated with the custom file type.
File type definitions may contain as many or as few file extensions as are useful for enforcement purposes. Pre-defined file types, for example, include the following file extensions:
When a user requests a site, Websense software:
1.
2.
3.
(Websense Web Security Gateway and Gateway Anywhere) If not blocked by extension, the file is analyzed to find its true file type.
 
Note 
When a user tries to access a blocked file type, the Reason field on the Websense block page indicates that the file type was blocked (see Block Pages).
The standard block page is not displayed if a blocked image comprises just a portion of a permitted page. Instead, the image region appears blank. This avoids the possibility of displaying a small portion of a block page in multiple locations on an otherwise permitted page.
To view existing file type definitions, edit file types, or create custom file types for enforcement by extension, go to Policy Management > Filter Components, and then click File Types. See Working with file type definitions for more information.
To enable file type blocking, see Enabling file type blocking in a category filter.

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Refine Web Security Policies > Managing traffic based on file type > Enforcement based on file extension
Copyright 2016 Forcepoint LLC. All rights reserved.