Configuring Application Control Policies

Use the Application Control Policies page to configure the application control policies. An application control policy allows you to permit or block traffic for the applications by schedule.

Important Tips:

 • Be aware that the Cisco ISA500 can control access only for the traffic that it handles. For example, if a PC and a server are directly connected to the LAN ports of the Cisco ISA500, Application Control policies apply to the traffic between these devices. However, if a switch is uplinked to the Cisco ISA500, the security appliance does not handle the traffic through the ports of that switch and therefore the Application Control policies do not apply.

 • Application Control uses signatures to identify and block the applications. You must update the application signatures frequently so that Application Control can identify the latest applications. See Updating Application Signature Database.

Refer to the following topics:

 • General Application Control Policy Settings

 • Adding an Application Control Policy

 • Permitting or Blocking Traffic for all Applications in a Category

 • Permitting or Blocking Traffic for an Application