cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1603
Views
0
Helpful
5
Replies

FMC not blocking URL

cisco8887
Level 2
Level 2

Hi All, 

 

I have setup an access policy to block access to porn and gambling yet the number 1 hit on google can be opened .

 

am I doing something wrong here?

5 Replies 5

cisco8887
Level 2
Level 2

it is listing sex.com as uncatogorised !!!!!!!!!!!

this site was registered in 1985, has cisco not caught up yet?

it started to work when I selected query csi cloud for unknown categories but before that the database was downloaded the day before.

 

Could it be the database wasn't really updated?

 

is there a way of seeing the db version for url category ?

Hi; 

 

I am assuming that the FMC won't download the category for every single URL on the internet, probably the most popular one, hence the Query CSI for unknown URL. 

 

Not sure if in the current Database for download the Site is there. Based on experience I have not been able to see a "version" per se for the URL database, but I have seen the logs on the FMC stating that it downloaded correctly. 

 

Mike.

Mike

cisco8887
Level 2
Level 2

it is listing adult site as uncatogorised !!!!!!!!!!!

this site was registered in 1985, has cisco not caught up yet?

Hello; 

 

It will query brightcloud services to check the category of the site. As you can see, on brightcloud it is categorized correctly: 

 

http://www.brightcloud.com/tools/change-request-url-categorization.php?endpoint=sex.com&catId=11,&category=Adult%20and%20Pornography,&repindex=96

 

The reason for this could be that either the FMC has not downloaded any information from brightcloud and/or there was an error querying the site. 

 

Check the following post and try the troubleshooting  steps listed there and let us know: 

 

https://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118852-technote-firesight-00.html

 

 

Mike
Review Cisco Networking products for a $25 gift card