Hi
I am trying to allow work-xxxx.facebook.com in my company. And have allowed the URL in a rule in my FireSIGHT system.
But when I access the page i still get a deny from the FireSIGHT.
If I look at connection event it blockes my session and says the session is https://facebook.com and then afterwards logs an allow statement for https://work-xxxx.facebook.com.
This is all done within the same HTTPS session(same source/destination port numbers)
Has anyone else denied facebook.com but allowed facebook workplace?