cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1196
Views
0
Helpful
6
Replies

Cisco ASA Firepower URL and App filtering is not working.

Lost & Found
Level 2
Level 2

Hi Sir's,

I Made a new app filtering policy and URL Filtering on Cisco firepower blocking all social networking site and torrent but still I can access and download.

Upon checking the ACP is using the access rule default action and not the one i created.

Details

i got software ver 5.3.1 and using ASA 5512 ver 9.4(1)

pls see the attached photo.

ACP.png

Default.png

 

Hope you could give some ideas

thanks

6 Replies 6

Looks like your policy is either not applied or some of the elements are not "commited".  Could you check to see if it is applied and / or commited please.

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

Upon checking on it's status "Applied to 1 out of 1 targeted devices" thanks

Then have you researched further why the policy has a warning sign next to it?  Perhaps remove all the configuration for this rule and then recreate it (including the objects you created for it.)

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

I'll try to remove and create a new one again. also I have search that I need to update my version. V6 has the capability to permit/block https. thanks

Hi Marius,

I've created a new Access Control Policy and Rule but after applying it all connection to outside went down/disable.

From workstation I can't ping / access any site on the internet.

Thanks

Could you post the configuration for your updated policy as well as the objects defined for the policy.

Did you identify which policy was dropping the traffic? Was it the policy you defined or was it the default action policy?

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts
Review Cisco Networking for a $25 gift card