02-18-2012 10:05 PM - edited 03-11-2019 03:31 PM
Hi
I got ASA 5510 and need to block traffic to youtube and facebook for some users, can we do this on ASA.
Doing some research I found that its doable if you got Microsoft ISA or Bluecoat Proxy
thanks
Anthony
02-19-2012 02:13 AM
Hi Anthony,
Yes you can, using inspection rules on http.
Have a look at this document :
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940c5a.shtml
Dan
02-19-2012 06:36 AM
Hello DAN, Anthony
I got Two subnets ( or say two vlans ) ; can I block url for one Subnet and allow for other subnet.
Setup goes like this...
ASA-----------------3560--------------2960_switches
On 3560
vlan 5
users
vlan 6
executive
interface vlan 5
ip address 10.1.1.1 255.255.255.0
interface vlan 6
ip address 10.1.2.1 255.255.255.0
ip route 0.0.0.0 0.0.0.0 192.168.1.100 (( 192.168.1.100 - firewall inside IP ))
cheers
Saquib
02-19-2012 07:39 AM
I think you can. When you create the service policy rule, choose only the source network(s) you want to apply the rule to.
Here is the screen is ASDM that you would select that:
02-19-2012 01:28 PM
thanks marvin ; i will test this option
cheers
Saquib
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide