7.4. Traffic shaping

The traffic shaping control rules allow you to limit bandwidth of network channels for certain users, hosts, services or applications.

Important! Rules are applied from top to bottom in the same order as they are displayed in the console. The system always applies only the first rule for which all criteria are met. This means that the most specific rules must be in the upper part of the list, while the broader rules must be in the bottom. If you want to change the order of rules, use the Up/Down buttons.

Important! The rule will be applied only when all its specific conditions are met. The Negate checkbox makes the condition opposite to the initial condition, i.e. corresponds to logical negation (NOT).

To create a new traffic shaping rule, click Add in the Network policies--> Traffic shaping section and specify the following parameters.

Name

Description

Enabled

Enables or disables a rule

Name

Rule name

Description

Description of a rule

Bandwidth pools

Select a bandwidth. You can add more bandwidths in Libraries-->Bandwidths.

Scenarios

It indicates a scenario that must be active for applying the rule. For more details on scenarios, please refer to Security policies-->Scenarios.

Important! A scenario represents an additional condition. If the scenario is not activated (i.e. one or more its triggers are not launched), the rule will not be applied.

Source

A source zone and/or a list of source IP addresses for the traffic.

Users

Users or groups

Destination

A destination zone and/or a list of destination IP addresses for the traffic.

Service

Service type, e.g. HTTP, HTTPS, etc.

Application

List of applications for which you are going to limit bandwidth. Important! To use applications, make sure you enable the Application Control module in General settings.

Time

Time ranges when rule is active.