ASA 5506W - How to Disable Peer to Peer Blocking
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-10-2018 06:50 AM - edited 02-21-2020 07:06 AM
Currently I have a ASA 5506W that seems to have the Peer to Peer Blocking enabled. Need help in disabling the P2P Blocking. Has anyone used this ASA before and turned P2P off before.
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-10-2018 10:05 PM
Hello,
Just with basic ASA and no additional features like IPS or sourcefire, its literlly impossible to block p2p applications considering the way they work. There is no specific port, ip, or application that can block p2p. Only layer7 signatures or regex can block these apps/p2p traffic effectively.
You might end up blocking all the known ports for p2p but still it might be able to use what is allowed. So, application layer protection is required here either at the network layer or at host level(antivirus etc)
Regards,
AJ
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-11-2018 04:36 AM
The issue is the 5506W has the WiFi Service on, and I'm trying to use Config WLAN. That syntax doesn't work on this device. The option of Peer to Peer Blocking was disabled at one point of time but the individual that setup didn't save the change and it wasn't documented.
