Enabling Risk-based URL Filtering

Filter URLs in the Internet Threat Protection (ITP) policy settings in SonicWall Cloud Secure Edge (CSE)

  • Updated on May 13, 2025
  • 5 minutes to read
  • Contributors

Risk-based URL Filtering Overview

Risk-based URL filtering allows admins to inspect host URLs (i.e., to determine threats associated with URLs and block or allow access accordingly). Admins can configure URL filtering within Internet Threat Protection (ITP) settings in CSE.

URL Exceptions

URL Exceptions are specific URLs that you want to designate as non-threats that do not require inspection.

Pre-requisites

  • mac or Windows device (not available for Linux or Chromebook)
  • SIA advanced license
  • ITP policy associated with your device
  • Desktop app version v3.26.0 or later

Steps to Configure Risk-based URL Filtering

Step 1: Navigate to URL Filtering in an ITP Policy

1.1 Navigate from Internet Access > Internet Threat Protection, and select an existing ITP policy.

1.2 Under the Filtering and Exceptions tab, navigate to URL Filtering.

Step 2: Enable Risk-based URL Filtering

2.1 Toggle on Risk-based URL Filtering.

Note: Only those URLs which are not already explicitly blocked by Category, Domain, and Application Filtering or enabled Threat Protections will be inspected.

Step 3: Optionally, add URL Exceptions

3.1 Toggle on URL Exceptions.

3.2 Enter the URL you want to bypass URL Filtering.

Note: URL Exceptions will not override enabled Category, Domain, and Application Filtering configurations or Threat Protections. If a URL is blocked at the domain level, for example, excepting a URL based in that domain will not exempt that URL from being inspected or blocked.