<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to block website Cisco ASA using MPF? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3716408#M12001</link>
    <description>&lt;P&gt;So you looking only specific IP to block this URL is this correct,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If so please refer below document, should be help for you to resolve.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/100513-ASARegexp.html#req" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/100513-ASARegexp.html#req&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 01 Oct 2018 13:49:29 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2018-10-01T13:49:29Z</dc:date>
    <item>
      <title>How to block website Cisco ASA using MPF?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3716263#M12000</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;our firewall is currently on code 8.2. i want to know how to block a specific website using MPF and dropping dns query.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i am able to block it for whole inside network but not for a specific ip address or group of ips.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;here is the code i am using.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;name 192.168.66.25 dummy-user&lt;BR /&gt;access-list dummy-user-rl extended permit ip any host dummy-user &lt;BR /&gt;access-list dummy-user-rl extended permit ip host dummy-user any&lt;BR /&gt;global (outisde) 17 201.xxx.yyy.zzz&lt;BR /&gt;nat (inside) 17 dummy-user 255.255.255.255&lt;BR /&gt;!&lt;BR /&gt;regex domain_netflix.com "\.netflix\.com"&lt;BR /&gt;!&lt;BR /&gt;class-map dummy-user-rl&lt;BR /&gt; match access-list dummy-user-rl&lt;BR /&gt;!&lt;BR /&gt;class-map type inspect dns match-all cm-dbl&lt;BR /&gt; description Blocked Domains&lt;BR /&gt; match domain-name regex domain_netflix.com&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns dns-inspect-pm&lt;BR /&gt; parameters&lt;BR /&gt; message-length maximum 512&lt;BR /&gt; match domain-name regex domain_netflix.com&lt;BR /&gt; class cm-dbl&lt;BR /&gt; drop log&lt;BR /&gt;!&lt;BR /&gt;policy-map global_policy &lt;BR /&gt; class dummy-user-rl&lt;BR /&gt; police input 4000000 12375&lt;BR /&gt; police output 4000000 12375&lt;BR /&gt; inspect dns dns-inspect-pm&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:18:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3716263#M12000</guid>
      <dc:creator>Jameel Ahmed</dc:creator>
      <dc:date>2020-02-21T16:18:11Z</dc:date>
    </item>
    <item>
      <title>Re: How to block website Cisco ASA using MPF?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3716408#M12001</link>
      <description>&lt;P&gt;So you looking only specific IP to block this URL is this correct,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If so please refer below document, should be help for you to resolve.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/100513-ASARegexp.html#req" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/100513-ASARegexp.html#req&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 01 Oct 2018 13:49:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3716408#M12001</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2018-10-01T13:49:29Z</dc:date>
    </item>
    <item>
      <title>Re: How to block website Cisco ASA using MPF?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3717321#M12002</link>
      <description>&lt;P&gt;The link you shared is about OS version &amp;gt;=8.3. i am using version 8.2.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Oct 2018 12:24:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3717321#M12002</guid>
      <dc:creator>Jameel Ahmed</dc:creator>
      <dc:date>2018-10-02T12:24:47Z</dc:date>
    </item>
    <item>
      <title>Re: How to block website Cisco ASA using MPF?</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3717521#M12003</link>
      <description>&lt;P&gt;Try the following:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;regex block-netflix.com "netflix\.com"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;class-map type regex match-any DOMAIN-BLOCK&lt;/P&gt;
&lt;P&gt;&amp;nbsp;match regex block-netflix.com&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;policy-map type inspect dns&amp;nbsp;&lt;SPAN&gt;dns-inspect-pm&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;match domain-name regex class&amp;nbsp;&lt;SPAN&gt;DOMAIN-BLOCK&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp;drop-connection log&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;policy-map global_policy&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;class dummy-user-rl&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;police input 4000000 12375&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;police output 4000000 12375&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;inspect dns dns-inspect-pm&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;service-policy global_policy global&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Oct 2018 15:14:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-website-cisco-asa-using-mpf/m-p/3717521#M12003</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2018-10-02T15:14:01Z</dc:date>
    </item>
  </channel>
</rss>

