<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CSA Configuration suggestion?? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353324#M96708</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Peter,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;   Thanks for your suggestions. I've been away for a few days, I'll try them out and let you know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;rgds&lt;/P&gt;&lt;P&gt;cbigas&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 08 Apr 2005 02:22:16 GMT</pubDate>
    <dc:creator>cbigas</dc:creator>
    <dc:date>2005-04-08T02:22:16Z</dc:date>
    <item>
      <title>CSA Configuration suggestion??</title>
      <link>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353322#M96706</link>
      <description>&lt;P&gt;How would you recommend a rule setup to lock down your SOE. For example I have an application class that has all our approved software listed, how could you then block/restrict anything that is not on this list???&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 09:21:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353322#M96706</guid>
      <dc:creator>cbigas</dc:creator>
      <dc:date>2019-03-10T09:21:06Z</dc:date>
    </item>
    <item>
      <title>Re: CSA Configuration suggestion??</title>
      <link>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353323#M96707</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey there -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Seems like permitting your SOE then denying *.exe, *.com, etc would be the easiest route.  It would take a clean PC to ensure your App Class had just the processes you wanted to run.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another alternative is that you could restrict the ability for the user's to install any program, while only permitting them to install from internal websites or from a pre-defined public share.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So for your question, if you had an App Class with all your permits, add a Deny to deny all executables you don't want to launch.  This could be any executable from the all hard drives, or maybe just executables in c:\program files\**&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let us know what you think and we can continue discussing this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;peter&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Mar 2005 04:25:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353323#M96707</guid>
      <dc:creator>pcomeaux</dc:creator>
      <dc:date>2005-03-28T04:25:53Z</dc:date>
    </item>
    <item>
      <title>Re: CSA Configuration suggestion??</title>
      <link>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353324#M96708</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Peter,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;   Thanks for your suggestions. I've been away for a few days, I'll try them out and let you know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;rgds&lt;/P&gt;&lt;P&gt;cbigas&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Apr 2005 02:22:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csa-configuration-suggestion/m-p/353324#M96708</guid>
      <dc:creator>cbigas</dc:creator>
      <dc:date>2005-04-08T02:22:16Z</dc:date>
    </item>
  </channel>
</rss>

