<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to block all bypasses application. ( Is it possible with in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673173#M556827</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have applied all these things but still that is working and bypass to firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I.A&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 03 May 2011 07:19:23 GMT</pubDate>
    <dc:creator>Imran Irshad</dc:creator>
    <dc:date>2011-05-03T07:19:23Z</dc:date>
    <item>
      <title>How to block all bypasses application. ( Is it possible with Cisco)</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673170#M556822</link>
      <description>&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;Dear All,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;How can I block Ultrasurf Application?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;I have configured Cisco ASA 5520 with Cisco CSC-SSM module.&lt;/SPAN&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;I have blocked everything Except Business and banking activities.&lt;/SPAN&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;But user can access A 2 Z traffic&amp;nbsp; through Ultrasurf.exe application. which bypasses all possible firewalls.&lt;/SPAN&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;How can I blocked this application?&lt;/SPAN&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt;Any solution??????????????&lt;/SPAN&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;Thanks&lt;/P&gt;&lt;P align="right" class="MsoNormal"&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;I.A&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="right" class="MsoNormal" style="text-align: left;"&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:27:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673170#M556822</guid>
      <dc:creator>Imran Irshad</dc:creator>
      <dc:date>2019-03-11T20:27:25Z</dc:date>
    </item>
    <item>
      <title>Re: How to block all bypasses application. ( Is it possible with</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673171#M556823</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm not familiar with ultrasurf, but it appears to just be a proxy addon for your browser. Here are some ideas...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) Remove admin access on the PCs so that executables cannot be run.&lt;/P&gt;&lt;P&gt;2) Sniff the ultrasurf traffic and block outbound traffic destined to their proxy-server IP addresses&lt;/P&gt;&lt;P&gt;3) Sniff the ultrasurf DNS traffic to determine the proxy DNS names. Then poison the responses on your DNS server. You will also need to block all DNS traffic except that which is destined to your server as well. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Brendan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Apr 2011 16:26:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673171#M556823</guid>
      <dc:creator>brquinn</dc:creator>
      <dc:date>2011-04-30T16:26:56Z</dc:date>
    </item>
    <item>
      <title>Re: How to block all bypasses application. ( Is it possible with</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673172#M556825</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Imran,&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; From what I've seen, ultrasurf connects to the remote proxies over an SSL secured connection on tcp/443. If you manually block all connections outbound on TCP/443 it may block the application but at the expense of legit HTTPS sites. You could then manually configured your ACL to allow connection to only some specific HTTPs and deny all others, but that would be a headache to administer.&amp;nbsp; Let me what else we could do...&lt;/P&gt;&lt;P&gt;Posted from my mobile device.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Apr 2011 20:23:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673172#M556825</guid>
      <dc:creator>Magnus Mortensen</dc:creator>
      <dc:date>2011-04-30T20:23:30Z</dc:date>
    </item>
    <item>
      <title>Re: How to block all bypasses application. ( Is it possible with</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673173#M556827</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have applied all these things but still that is working and bypass to firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I.A&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 May 2011 07:19:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673173#M556827</guid>
      <dc:creator>Imran Irshad</dc:creator>
      <dc:date>2011-05-03T07:19:23Z</dc:date>
    </item>
    <item>
      <title>Re: How to block all bypasses application. ( Is it possible with</title>
      <link>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673174#M556831</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How exactly is it bypassing the firewall? Can you provide logs or packet captures showing what traffic is being sent and what rules you have in place that should be denying the traffic?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Brendan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 May 2011 13:52:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-block-all-bypasses-application-is-it-possible-with-cisco/m-p/1673174#M556831</guid>
      <dc:creator>brquinn</dc:creator>
      <dc:date>2011-05-03T13:52:09Z</dc:date>
    </item>
  </channel>
</rss>

