Dynamic Defense ®

How to Create a Custom Service Toggle

It is not uncommon for organizations to run a common application on a non-standard TCP or UDP port. If an application or service is not represented within the default Service Control, it will need to be added through Custom Service creation.

To Create a custom service toggle, follow the below steps:

1

Navigate to the Services Module

Navigation: Policy > Services

Services home

2

Add Custom Service to Inventory

To begin adding your custom service, navigate to the body of the Service Inventory Module shown above.

Once here, click "Add" on the right side of the page

Service add information

For each Service added, you will need to populate the following items within the UI:

  • Name
  • Protocol (TCP or UDP)
  • Source or Destination Port
  • Default Behavior (From My Network or From Internet) 
  • Description
Example 1:

Lets assume you are running Linux servers on your network but would like to use port 1122 for your SSH service, rather than the standard port 22 for SSH.

To do this you would simply by clicking on "Add" at the right-hand side of the page

Provide a Service Name like "Alternate-SSH"

Select "TCP" for Protocol

Input "1122" in the Destination Port field

Decide your default behavior, this is what will populate in the Service Control Default View: Policy > Services > Filter by Custom Origin

In this case we would allow Traffic from the Internet and Block traffic From My Network

Lastly, provide a quick description of the Service as needed.

Click "Save"

Add screen for custom service toggle example

After the Service is added, it should be reflected within the Services Module and you will be pushed into a draft state to confirm your Service add. To apply the Service add proceed to Step 3

Service home with custom example

3

Apply Your Draft Policy

This Section

1
Navigate to the Services Module
2
Add Custom Service to Inventory
3
Apply Your Draft Policy