cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4604
Views
0
Helpful
4
Replies

Block TOR Browser by FirePOWER

mohamedMeh1
Level 1
Level 1

Dear All;

I tried to block TOR browser by ASA 5515 FirePOWEP and FireSIGHT 5.3.1 using TOR application, And there's no results and no connections view as well. Please let me know if this issue has been solved with FirePOWEP and FireSIGHT 5.4.1 or 6 version.

Thanks

4 Replies 4

Aastha Bhardwaj
Cisco Employee
Cisco Employee

Hi.


The IP addresses of known TOR exit nodes are included in the Security Intelligence feed.
You may block connections to these IP addresses by setting the category Tor_exit_node in
the blacklist column of your security intelligence settings for your applied access
control policy. Setting Any as the configured zone will block connections to and from
these IP addresses.


Policies --> Access Control --> Edit a policy --> Security Intelligence tab.

Regards,

Aastha Bhardwaj

Rate if that helps!!!

Many thanks;

If you tried and work with you well, Please share snap shot. 

other thing, Do you tried in 5.3.1?

M. Mehdi 

This does'nt work! With tor application the client can browse everything to everywhere!

rick11
Level 1
Level 1

is it possible to check the content of the security intelligence list?

Review Cisco Networking for a $25 gift card