BlackBerry Forums Support Community
              

Closed Thread
 
Thread Tools
Old 11-30-2009, 04:02 AM   #1
clady
New Member
 
Join Date: Aug 2009
Model: 8800
PIN: N/A
Carrier: TIM
Posts: 6
Question BES 4.1 - Pull Access Rules

Please Login to Remove!

Hello,

I have to configure access control rules to allow Internet access, through a proxy server, but I've also to disallow access to our internal servers, for security reasons.

So I'm trying to write the needed rules but I noticed that BES 4.1, unlike the 4.0 version, doesn't allow the usage of regular expression.

In fact, every special char it is converted to its plain text format. For example "\w" is converted to "\\w" or "^" to "\^".

In my opinion, the convertion has done by the BlackBerry Manager GUI because regular expressions defined on the previous version were correctly imported during the upgrade.

Can you help me to understand how can write complex rules, taking into account also that rules are evaluated independently by their position (deny seems to wins over all, even if there's a more specific allow rule)?

Should I try to write the rules writing them on the Manager and then modifying the respective fields directly on SQL DB? I tryed this solution on a test environment but, although it seems to work fine, it doesn't seems to me the right way....

Thanks.
Offline  
Old 11-30-2009, 11:59 AM   #2
fadmin
BlackBerry Extraordinaire
 
Join Date: Mar 2007
Model: Z10
OS: 10.1.0.19
Carrier: Fido
Posts: 1,068
Default

Read this as it may help:
View Document
Offline  
Old 11-30-2009, 04:25 PM   #3
clady
New Member
 
Join Date: Aug 2009
Model: 8800
PIN: N/A
Carrier: TIM
Posts: 6
Default

Thank you very much but as you can see, the document reports a different procedure for each of the two BES version 4.0 and 4.1.
In the second one, unlike the 4.0 version, the Manager doesn't admit regular expression but only the usage of "*" char.
And this is not enough for me that have to configure more complex rules in order to both give Internet access and blocking traffic to internal servers.
I can confirm that also today I tryed to modify the rules directly on the SQL server, of our test environment, and regular expressions worked fine.
So this restriction seems to be introduced by the GUI.
Another problem is that it's not clear to me how rules are evaluated. "Deny" seems to win over all, even if there is a more specific "allow" rule. Strange overall is the fact that rules are evaluated independently of their position.

I'm seriously taking into account to use a firewall to control the traffic, but in this case I'll loose the possibility to make user based access control.

So, other suggestions are still welcome.
Offline  
Closed Thread



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


FANUC Servo Amplifier A06B-6240-H208 picture

FANUC Servo Amplifier A06B-6240-H208

$3199.00



MITSUBISHI Amplifier MR-J2S-200B MRJ2S200B AC Servo Drive New in box picture

MITSUBISHI Amplifier MR-J2S-200B MRJ2S200B AC Servo Drive New in box

$463.00



1pcs Fanuc Servo Amplifier A06B-6077-H002 New by DHL or EMS picture

1pcs Fanuc Servo Amplifier A06B-6077-H002 New by DHL or EMS

$1089.00



Voice Amp Amplifier Model 200260 Scott EPIC Safety Compatible w AV3000 AV2000 picture

Voice Amp Amplifier Model 200260 Scott EPIC Safety Compatible w AV3000 AV2000

$60.00



Voice Amp Amplifier 201141-01 3M Scott EPIC 3 Safety Compatible w AV3000 AV2000 picture

Voice Amp Amplifier 201141-01 3M Scott EPIC 3 Safety Compatible w AV3000 AV2000

$69.99



Mini-circuits High Power Amplifier ZHL-5W-1X+ picture

Mini-circuits High Power Amplifier ZHL-5W-1X+

$347.50







Copyright © 2004-2016 BlackBerryForums.com.
The names RIM © and BlackBerry © are registered Trademarks of BlackBerry Inc.