i'm using pix firewall and using it as a firewall and as a proxy server, the problem is that i can't block the web access from the clients that installed on their pcs a program named ultrasurf , this program changes the web proxy setting in the internet options of the clients pcs to 127.0.0.1:966 even if i required from them to use my proxy ip and the port 8080 or 80, that program change these settings to 127.0.0.1:9666 so how please to control that by pix firewall rules, thanks alot for your response and help
Re: how to block ultrasurf traffic on cisco firewall
FWSM is a firewall that has a connection based operation. All it sees are connections passing through. It's not possible to look into the payload since UltraSurf encrypts the traffic. Any SSL packet passing through the firewall can be a potential UltraSurf packet. But you can't just block all TCP 443 because many secure connections relay on this protocol.
There is nothing else the FWSM can do to block UltraSurf. Based on Cisco documentation, all it can do to try to block it is the use of ACLs.
In order to have an efficient action over UltraSurf you need advanced encrypted content engines analyzers (like an ACE module that can look into encrypted payload).
This is to address those customers coming to ISE from ACS or new to ISE that need a password change portal (UCP)
What are the licensing requirements for this solution?
My Devices - For using the password change with My Devices you need plus licenses as ...
In this paper we will document the configuration and operation of an integrated solution that includes identity management, firewall, cloud-based management, and cloud-based logging.
We will use the following Cisco products:
These days everything is in the cloud. We all know that Cisco Firepower Threat Defense (FTD) is a unified software image, which includes the Cisco ASA features and FirePOWER Services. Using Cisco Defense Orchestrator (CDO), you can manage physical or virt...
Cisco Defense Orchestrator (CDO) is a cloud-based, multi-device manager that provides a simple, consistent, and highly secure way of managing security policies on all your ASA devices. CDO helps you optimize your ASA environment by identifying problems wi...