Manage WebGroups

WebGroups are groupings of domains, inserted into Distributed Cloud Firewall rules, that filter and provide security to Internet-bound traffic.

From this tab you can save views, filter intrusion results, and download the results in a CSV file.

create webgroup dialog

To filter HTTP or HTTPS traffic with a URL-based WebGroup, TLS Decryption must be enabled in the DCF rule where the WebGroup is used.

Non-TLS or non-HTTP traffic will not match the rule that uses the WebGroup and will be evaluated against later rules.

For more information about TLS Decryption, see the entry in Distributed Cloud Firewall Field Reference.

System-Defined WebGroup

When you navigate to Groups > WebGroups, a system-defined WebGroup, 'All-Web', has already been created for you (if no other WebGroups exist). This predefined WebGroup cannot be deleted.

This is an "allow-all" WebGroup that must be present in a Distributed Cloud Firewall rule if you do not want to limit the Internet-bound traffic for that rule, but you still want to log the FQDNs that are being accessed.