01-29-2013 12:36 PM - edited 03-11-2019 05:54 PM
Hi, I'm using ASA 5515X my concern is I was not able to block the traffic of P2P such as BitTorrent etc. I was also view some technotes on how to use webfilter without using Websense or Smartfilter tools and lucky I'm able to block certain websites. Is there anyone has expertise on how to block the traffic of P2P? Appreciate their response. Thanks.
02-09-2013 11:53 AM
Hello Baltazar,
This has been always an interesting topic here at the community as it looks like the ASA can only block specific P2P sites but there are additional tools you could use with your ASA to accomplish this ( An example of that is an IPS sensor or module)
Anyway try the following and please keep us posted
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808c38a6.shtml
Now you could approach this issue on different places on your network ( with the deffense in depth approach ) as if all of this traffic reaches the ASA we are going to have a bottleneck here ( because of the huge amount of traffic being exchanged on P2P sessions ) You could try to combat this with QoS on the switches, routers in between, using NBAR,etc,etc.
Regards,
02-09-2013 12:14 PM
With the latest release 9.1 you can buy and use the asa CX SOFTWARE module
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide