cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
503
Views
0
Helpful
3
Replies

Cisco FTD does not recognise .docx nor .xlsx files

Nele Valjak
Level 1
Level 1

Hi

I have FMC 7.0.4 and two FTD 1120 in HA v 7.0.1.

I am testing file policy with rule: block all files in all directions. SSL decryption is configured and working. All files have been blocked except .docx, .xlsx, .pptx files.

I do not have event that file is recognised in connection events. For testing purpose Access policy with only one rule was created (to allow http and https traffic with Block all files file policy).

Test was done on site:

https://file-examples.com/index.php/sample-documents-download/sample-doc-download/

Here.. all .doc files have been blocked but not .docx.

Any idea?

3 Replies 3

The FTD would only recognize what is supported in the file type list inside the file blocking policy, if you don't see those extensions in there it would mean the FTD still doesn't support them.

Hi,

They are listed in Office Documents category like NEW_OFFICE file type subcategory. Description is: Microsoft office open xml format and some docx,pptx and xlsx are listed here.

 

I would raise this with TAC because if SSL decryption is enabled the firewall should be able to read the content of the payload and accordingly should recognize those extensions to be blocked.

Review Cisco Networking for a $25 gift card