---
title: "Configure a Domain Reputation ruleset"
canonical: "https://docs.aryaka.com/space/KNOW/28085394/Configure%20a%20Domain%20Reputation%20ruleset"
format: markdown
---
The Domain Reputation security engine has been combined with the Next Generation Firewall security engine. To configure security rules based on a domain’s reputation score, see the  Configure a Next Generation Firewall ruleset  topic.  This topic describes how to create or edit a Domain Reputation ruleset. Domain Reputation rules are used to permit or deny IP traffic based on the domain's reputation score and category. You can add multiple Domain Reputation rules to a ruleset and then apply the ruleset to one or more sites. If you want to create a Domain Reputation rule that applies only to one site, see the  Configure site-level security features  help topic.  Domain reputation Aryaka uses the Web Reputation Service provided by  Webroot  to evaluate a site’s potential threat status. Webroot classifies domains according to reputation score and category, allowing you to configure effective security rules to permit or deny traffic for each of your sites and protect your users from web-based threats and prohibited content. Domain reputation score The threat history of pages on the domain, age of observance, user traffic, geolocation, associated networks, internal and external links, as well as other contextual and behavioral trends are all used to determine a website’s reputation score. Scores range from 1 to 100, with tiers split into High Risk (1–20), Suspicious (21–40), Moderate Risk (41–60), Low Risk (61–80), and Trustworthy (81–100). Numerically lower scores indicate websites that are more likely to be, or to become, bad. URLs for which a reputation score cannot be determined are given a score of zero.  Domain category Webroot uses approximately 80 categories to classify domains and URLs. Domains for which a category cannot be determined are labeled Unclassified. The Webroot categories are separated into the following groups: Security—Includes websites with content that may be harmful to your system, network, or users, for example, malware, phishing, spyware, and keyloggers. Productivity—Includes websites with content that you can choose to deny access to as needed, for example, travel, social networking, sports, and news.  IT Resources—Includes websites with content that heavily utilize network bandwidth, for example, streaming media, shareware and freeware, and internet communications. Privacy—Includes websites for which traffic may contain highly sensitive personal information, for example, financial services, healthcare, and email. Sensitive—includes websites with content considered unsuitable for a work environment and certain audiences, for example, drugs, gambling, religion, and violence.  Miscellaneous—Includes websites that are dead. See the  NGFW-SWG  topic for additional details on the Domain Reputation security engine and the other security engines that are used to inspect network traffic.  In this topic Related topics Configure site-level security features NGFW-SWG