10-14-2014 10:03 AM - edited 03-11-2019 09:55 PM
Hello,
Unauthorized usages of misilinious applications like (Skype, Tor_Browsers.....) , is killing me. I have tried alot to find a way to block these applications , but never i succeeded.
Can any one guide me how to block such things on Cisco ASA & ISRs please ??
Another question, i dont know why Cisco has not enabled UDP Ports Inspection on its products, this lack of UDP-inspection makes alot of troubles to IT people
Thanks for any guid-lines
10-14-2014 10:41 AM
What model ASA do you have? You will require a NGFW with CX to achieve what you want.
Within either PRSM or managing the CX directly off the ASA. Create a new access policy, you will select source and destination then in the "Application/Service" section, this is where you select the application, in this case "BitTorrent" and "Skype"
Policy Action being Deny
Save Policy
At least it should be similar to the above, the CX "module" is far from being a power house NGFW offering. *sigh*
10-19-2014 06:49 PM
My way to block tor is this
http://nbctcp.wordpress.com/2014/10/20/blocking-tor-browser-in-cisco-asa-5505/
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide